Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The CSS parser in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 ignores the '\0' escaped null character, which might allow remote attackers to bypass protection mechanisms such as sanitization routines.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox '\0'字符处理漏洞
Vulnerability Description
Firefox是Mozilla所发布的开源WEB浏览器。 在CSS中,\0标识空字符,但Mozilla缺忽略了该字符。例如,c\0olor:red;会被处理为color:red;。这可能导致绕过web应用中的某些脚本过滤例程。
CVSS Information
N/A
Vulnerability Type
N/A