Threat level definition
Search:
Home
Bugtraq
Vulnerabilities
Mailing Lists
Jobs
Tools
Beta Programs
News
Infocus
Foundations
Microsoft
Unix
IDS
Incidents
Virus
Pen-Test
Firewalls
Columnists
Mailing Lists
Newsletters
Bugtraq
Focus on IDS
Focus on Linux
Focus on Microsoft
Forensics
Pen-test
Security Basics
Vuln Dev
Vulnerabilities
Jobs
Job Opportunities
Resumes
Job Seekers
Employers
Tools
RSS
News
Vulns
Security Research
info
discussion
exploit
solution
references
Mozilla Firefox Jar URI Cross-Site Scripting Vulnerability
References:
(jarxss2) â?? Sort out jar: behavior on HTTP redirects
(Mozilla)
Mozilla Firefox Homepage
(Mozilla)
What's New in Netscape Navigator 9.0.0.4
(Netscape)
ASA-2007-492 - seamonkey security update (RHSA-2007-1084)
(Avaya)
ASA-2007-494 - Firefox security update (RHSA-2007-1082)
(Avaya)
jar: protocol is an XSS hazard due to ignoring mime type and being considered sa
(Jesse Ruderman)
MDKSA-2007:246 - mozilla-firefox
(Mandriva)
MFSA 2007-37 jar: URI scheme XSS hazard
(Mozilla)
Mozilla Firefox jar URI cross-site scripting vulnerability
(US-CERT)
Red Hat Linux Security Advisory RHSA-2007:1084-8
(Red Hat)
RHSA-2007:1082-5 - Critical: firefox security update
(Red Hat)
RHSA-2007:1083-5 thunderbird security update
(Red Hat)
Web Mayhem: Firefoxâ??s JAR: Protocol issues
(GNUCITIZEN)
Privacy Statement
Copyright 2009, SecurityFocus