Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Firefox onUnload脚本浏览器欺骗漏洞
Vulnerability Description
Mozilla Firefox是开放源码的WEB浏览器。 Firefox的JavaScript onUnload处理器实现上存在漏洞,恶意网页可能利用此漏洞执行钓鱼攻击。 Firefox没有正确地实现JavaScript onUnload处理器,onUnload事件处理器可以访问所要加载新页面的地址,即使从页面内容以外触发了导航(如通过使用书签、点击返回键、在地址栏中输入地址)。如果书签在URL中包含有敏感信息的话,攻击网页就可以利用这个漏洞;此外攻击者还可以重新定向用户,伪造看起来类似于将要访问站点的页
CVSS Information
N/A
Vulnerability Type
N/A