Firefox CVE-2007-3827 Remote Security Vulnerability

Firefox is prone to a remote security vulnerability. Mozilla Firefox allows for cookies to be set with a null domain (aka "domainless cookies"), which allows remote attackers to pass information between arbitrary domains and track user activity, as demonstrated by the domain attribute in the document.cookie variable in a javascript: window.


 

Privacy Statement
Copyright 2010, SecurityFocus