Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-1530
HistoryApr 30, 2014 - 10:49 a.m.

Cross site scripting

2014-04-3010:49:00
PRIOn knowledge base
www.prio-n.com
7

5.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.6%

The docshell implementation in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to trigger the loading of a URL with a spoofed baseURI property, and conduct cross-site scripting (XSS) attacks, via a crafted web site that performs history navigation.

References