Lucene search

K
cvelistRedhatCVELIST:CVE-2007-3736
HistoryJul 18, 2007 - 5:00 p.m.

CVE-2007-3736

2007-07-1817:00:00
redhat
www.cve.org
3

AI Score

8

Confidence

High

EPSS

0.479

Percentile

97.5%

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.5 allows remote attackers to inject arbitrary web script “into another site’s context” via a “timing issue” involving the (1) addEventListener or (2) setTimeout function, probably by setting events that activate after the context has changed.

References