Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla firefox/mozilla/netscape DOM 代码执行漏洞
Vulnerability Description
firefox、Mozilla及Netscape都是web浏览器软件。 Firefox 1.0.5之前版本、mozilla 1.7.9之前版本以及Netscape 8.0.2中存在漏洞。 由于没有正确校验DOM节点名与namespaces之间的关联类型,远程攻击者可利用此漏洞修改某些tag properies,可能导致执行任意脚本或代码。
CVSS Information
N/A
Vulnerability Type
N/A