Lucene search

K
cvelistRedhatCVELIST:CVE-2005-0401
HistoryMar 24, 2005 - 5:00 a.m.

CVE-2005-0401

2005-03-2405:00:00
redhat
www.cve.org
7

AI Score

6.7

Confidence

High

EPSS

0.683

Percentile

98.0%

FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka “Firescrolling 2.”