Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mozilla Suite And Firefox Blocked Pop-Up Window Remote Script Code Execution Vulnerability

A remote script code execution vulnerability affects Mozilla Suite and Mozilla Firefox. This issue is due to a failure of the application to execute JavaScript in blocked pop-up windows securely.

An attacker may be able to exploit this issue to execute arbitrary script code with the privileges of an unsuspecting user that activated the affected Web browser. This may facilitate the installation and execution of malicious applications, subsequently facilitating unauthorized access.

It should be noted that this issue was previously reported in BID 13208 (Mozilla Suite Multiple Code Execution, Cross-Site Scripting, And Policy Bypass Vulnerabilities); it has been assigned its own BID.







 

Privacy Statement
Copyright 2008, SecurityFocus