First published: Fri Sep 23 2005(Updated: )
Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to modify HTTP headers of XML HTTP requests via XMLHttpRequest, and possibly use the client to exploit vulnerabilities in servers or proxies, including HTTP request smuggling and HTTP request splitting.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | =1.0.2 | |
Mozilla Firefox | <=1.0.6 | |
Mozilla Mozilla Suite | <=1.7.11 | |
Mozilla Mozilla Suite | =1.7.10 | |
Mozilla Firefox | =1.0.4 | |
Mozilla Mozilla Suite | =1.7.8 | |
Mozilla Firefox | =1.0 | |
Mozilla Firefox | =1.0.1 | |
Mozilla Firefox | =1.0.3 | |
Mozilla Mozilla Suite | =1.7.7 | |
Mozilla Mozilla Suite | =1.7.6 | |
Mozilla Firefox | =1.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.