Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The loadBindingDocument function in Mozilla Firefox 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 does not perform any security checks related to the same-domain policy, which allows remote attackers to read or access data from other domains via crafted XBL bindings.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox XBL绑定错误 远程访问漏洞
Vulnerability Description
Firefox是Mozilla所发布的开源WEB浏览器。 Mozilla Firefox 2.x 2.0.0.19以前版本, Thunderbird 2.x 2.0.0.19以前版本和 SeaMonkey 1.x 1.1.14以前版本中的loadBindingDocument函数无法完成同源策略的检测,这个允许其他域攻击者通过一个XBL绑定访问任意数据。
CVSS Information
N/A
Vulnerability Type
N/A