Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-0995
HistoryFeb 26, 2007 - 12:00 a.m.

CVE-2007-0995

2007-02-2600:00:00
ubuntu.com
ubuntu.com
14

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.219

Percentile

96.5%

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey
before 1.0.8 ignores trailing invalid HTML characters in attribute names,
which allows remote attackers to bypass content filters that use regular
expressions.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchfirefox< 1.5.dfsg+1.5.0.13~prepatch070731-0ubuntu1UNKNOWN
ubuntu6.10noarchfirefox< 2.0.0.6+0dfsg-0ubuntu0.6.10UNKNOWN
ubuntu7.04noarchfirefox< 2.0.0.6+1-0ubuntu1UNKNOWN
ubuntu7.10noarchiceape< 1.1.4-1ubuntu2UNKNOWN
ubuntu7.10noarchlightning-sunbird< 0.5-0ubuntu4UNKNOWN
ubuntu7.10noarchmidbrowser< 0.1.6b-0ubuntu2UNKNOWN
ubuntu7.04noarchxulrunner< 1.8.0.10-3ubuntu1UNKNOWN
ubuntu7.10noarchxulrunner< 1.8.0.10-3ubuntu1UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.219

Percentile

96.5%