New Search

Red Hat Enterprise 3 Mozilla Zombie Document Vulnerability

oval:org.mitre.oval:def:937

Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks as demonstrated using onmousemove events.

Family:
unix
Status:
ACCEPTED
Platform(s):
  • Red Hat Enterprise Linux 3
Class:
vulnerability
Reference(s):
  • CVE-2004-0191
Product(s):