CVE-2005-1937: Low severity Mozilla Firefox vulnerability
A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1937?
CVE-2005-1937 is classified as a moderate severity vulnerability due to the potential for cross-site scripting attacks.
How do I fix CVE-2005-1937?
To mitigate CVE-2005-1937, users should upgrade to a patched version of Firefox or Mozilla that addresses this vulnerability.
What types of software are affected by CVE-2005-1937?
CVE-2005-1937 affects Firefox version 1.0.3 and Mozilla version 1.7.7.
What does CVE-2005-1937 allow attackers to do?
CVE-2005-1937 allows attackers to inject arbitrary JavaScript from one page into the frameset of another, enabling possible spoofing attacks.
Is CVE-2005-1937 a newly discovered vulnerability?
No, CVE-2005-1937 is a regression of a previously identified vulnerability addressed in CVE-2004-XXXXX.