CVE-2005-2261: High severity Mozilla Thunderbird vulnerability
Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2261?
CVE-2005-2261 has been classified as a moderate severity vulnerability, as it allows remote attackers to bypass JavaScript protection.
How do I fix CVE-2005-2261?
To fix CVE-2005-2261, you should upgrade to the latest version of affected software such as Firefox or Thunderbird, specifically version 1.0.5 or later.
What software is affected by CVE-2005-2261?
CVE-2005-2261 affects several versions of Firefox, Thunderbird, Mozilla, Netscape, and K-Meleon prior to specified versions.
How does CVE-2005-2261 impact users?
CVE-2005-2261 allows attackers to execute XBL scripts even with JavaScript disabled, which could lead to further exploits.
When was CVE-2005-2261 discovered?
CVE-2005-2261 was publicly disclosed as a vulnerability related to various Mozilla products, with notable impacts in 2005.