CVE-2004-0909: Medium severity mozilla mozilla vulnerability
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 may allow remote attackers to trick users into performing unexpected actions, including installing software, via signed scripts that request enhanced abilities using the enablePrivilege parameter, then modify the meaning of certain security-relevant dialog messages.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0909?
CVE-2004-0909 is classified as a moderate severity vulnerability.
How do I fix CVE-2004-0909?
To fix CVE-2004-0909, update your Mozilla Firefox or Thunderbird to versions later than the affected versions.
What versions are affected by CVE-2004-0909?
CVE-2004-0909 affects multiple versions of Mozilla Firefox prior to 1.7.3 and Thunderbird prior to 0.8.
What type of attacks does CVE-2004-0909 enable?
CVE-2004-0909 may allow remote attackers to manipulate signed scripts to perform unintended actions on a user's system.
Is there a patch available for CVE-2004-0909?
Yes, patches are available through the official updates for the affected Mozilla products.