CVE-2002-1126: Low severity mozilla mozilla vulnerability
Mozilla 1.1 and earlier, and Mozilla-based browsers such as Netscape and Galeon, set the document referrer too quickly in certain situations when a new page is being loaded, which allows web pages to determine the next page that is being visited, including manually entered URLs, using the onunload handler.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1126?
CVE-2002-1126 is classified as a moderate severity vulnerability due to its potential to expose users' browsing behavior.
How do I fix CVE-2002-1126?
To fix CVE-2002-1126, users should upgrade to a later version of Mozilla or Mozilla-based browsers that have patched the vulnerability.
What browsers are affected by CVE-2002-1126?
CVE-2002-1126 affects Mozilla versions 0.9.3 through 1.1 and Mozilla-based browsers such as Netscape and Galeon.
What type of vulnerability is CVE-2002-1126?
CVE-2002-1126 is an information disclosure vulnerability that allows websites to infer users' next page visits.
Can CVE-2002-1126 be exploited remotely?
Yes, CVE-2002-1126 can be exploited remotely by malicious web pages that can leverage the vulnerability to track user navigation.