Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox/Thunderbird/SeaMonkey 函数'XMLDocument::load' 安全绕过漏洞
Vulnerability Description
Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。 Mozilla Firefox/Thunderbird/SeaMonkey 函数'XMLDocument::load' 存在安全绕过漏洞。在加载XML文档内容时,函数XMLDocument::load没有执行预期的nsIContentPolicy检查,这允许攻击者绕过访问限制执行非授权操作。
CVSS Information
N/A
Vulnerability Type
N/A