Lucene search

K
nvd[email protected]NVD:CVE-2004-0191
HistoryMar 15, 2004 - 5:00 a.m.

CVE-2004-0191

2004-03-1505:00:00
web.nvd.nist.gov
7

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.6

Confidence

High

EPSS

0.014

Percentile

86.4%

Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.

Affected configurations

Nvd
Node
mozillamozillaMatch0.8
OR
mozillamozillaMatch0.9.2
OR
mozillamozillaMatch0.9.2.1
OR
mozillamozillaMatch0.9.3
OR
mozillamozillaMatch0.9.4
OR
mozillamozillaMatch0.9.4.1
OR
mozillamozillaMatch0.9.5
OR
mozillamozillaMatch0.9.6
OR
mozillamozillaMatch0.9.7
OR
mozillamozillaMatch0.9.8
OR
mozillamozillaMatch0.9.9
OR
mozillamozillaMatch0.9.35
OR
mozillamozillaMatch0.9.48
OR
mozillamozillaMatch1.0
OR
mozillamozillaMatch1.0rc1
OR
mozillamozillaMatch1.0rc2
OR
mozillamozillaMatch1.0.1
OR
mozillamozillaMatch1.0.2
OR
mozillamozillaMatch1.1
OR
mozillamozillaMatch1.1alpha
OR
mozillamozillaMatch1.1beta
OR
mozillamozillaMatch1.2
OR
mozillamozillaMatch1.2alpha
OR
mozillamozillaMatch1.2beta
OR
mozillamozillaMatch1.2.1
OR
mozillamozillaMatch1.3
OR
mozillamozillaMatch1.3.1
OR
mozillamozillaMatch1.4
OR
mozillamozillaMatch1.4alpha
OR
mozillamozillaMatch1.4beta
OR
mozillamozillaMatch1.4.1
OR
mozillamozillaMatch1.5
VendorProductVersionCPE
mozillamozilla0.8cpe:2.3:a:mozilla:mozilla:0.8:*:*:*:*:*:*:*
mozillamozilla0.9.2cpe:2.3:a:mozilla:mozilla:0.9.2:*:*:*:*:*:*:*
mozillamozilla0.9.2.1cpe:2.3:a:mozilla:mozilla:0.9.2.1:*:*:*:*:*:*:*
mozillamozilla0.9.3cpe:2.3:a:mozilla:mozilla:0.9.3:*:*:*:*:*:*:*
mozillamozilla0.9.4cpe:2.3:a:mozilla:mozilla:0.9.4:*:*:*:*:*:*:*
mozillamozilla0.9.4.1cpe:2.3:a:mozilla:mozilla:0.9.4.1:*:*:*:*:*:*:*
mozillamozilla0.9.5cpe:2.3:a:mozilla:mozilla:0.9.5:*:*:*:*:*:*:*
mozillamozilla0.9.6cpe:2.3:a:mozilla:mozilla:0.9.6:*:*:*:*:*:*:*
mozillamozilla0.9.7cpe:2.3:a:mozilla:mozilla:0.9.7:*:*:*:*:*:*:*
mozillamozilla0.9.8cpe:2.3:a:mozilla:mozilla:0.9.8:*:*:*:*:*:*:*
Rows per page:
1-10 of 321

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.6

Confidence

High

EPSS

0.014

Percentile

86.4%

Related for NVD:CVE-2004-0191