CVE-2004-0191
 
Severity Score
6.8
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.
Mozilla 1.4.2 ejecuta eventos de Javascript en el contexto de una nueva página mientras se está cargando, permitiéndolo interactuar con la página anterior ("documento zombi") y posibilitando ataques de secuencias de comandos en sitios cruzados (XSS), como se ha demostrado usando eventos onmousemove.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2004-03-03 CVE Reserved
- 2004-03-15 CVE Published
- 2024-03-09 EPSS Updated
- 2024-08-08 CVE Updated
- 2024-08-08 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (12)
URL | Date | SRC |
---|---|---|
http://bugzilla.mozilla.org/show_bug.cgi?id=227417 | 2024-08-08 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=108448379429944&w=2 | 2017-10-10 | |
http://www.redhat.com/support/errata/RHSA-2004-110.html | 2017-10-10 | |
http://www.redhat.com/support/errata/RHSA-2004-112.html | 2017-10-10 | |
http://www.securityfocus.com/bid/9747 | 2017-10-10 | |
https://access.redhat.com/security/cve/CVE-2004-0191 | 2004-03-17 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1617178 | 2004-03-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.8 Search vendor "Mozilla" for product "Mozilla" and version "0.8" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.2 Search vendor "Mozilla" for product "Mozilla" and version "0.9.2" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.2.1 Search vendor "Mozilla" for product "Mozilla" and version "0.9.2.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.3 Search vendor "Mozilla" for product "Mozilla" and version "0.9.3" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.4 Search vendor "Mozilla" for product "Mozilla" and version "0.9.4" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.4.1 Search vendor "Mozilla" for product "Mozilla" and version "0.9.4.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.5 Search vendor "Mozilla" for product "Mozilla" and version "0.9.5" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.6 Search vendor "Mozilla" for product "Mozilla" and version "0.9.6" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.7 Search vendor "Mozilla" for product "Mozilla" and version "0.9.7" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.8 Search vendor "Mozilla" for product "Mozilla" and version "0.9.8" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.9 Search vendor "Mozilla" for product "Mozilla" and version "0.9.9" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.35 Search vendor "Mozilla" for product "Mozilla" and version "0.9.35" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 0.9.48 Search vendor "Mozilla" for product "Mozilla" and version "0.9.48" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.0 Search vendor "Mozilla" for product "Mozilla" and version "1.0" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.0 Search vendor "Mozilla" for product "Mozilla" and version "1.0" | rc1 |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.0 Search vendor "Mozilla" for product "Mozilla" and version "1.0" | rc2 |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.0.1 Search vendor "Mozilla" for product "Mozilla" and version "1.0.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.0.2 Search vendor "Mozilla" for product "Mozilla" and version "1.0.2" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.1 Search vendor "Mozilla" for product "Mozilla" and version "1.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.1 Search vendor "Mozilla" for product "Mozilla" and version "1.1" | alpha |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.1 Search vendor "Mozilla" for product "Mozilla" and version "1.1" | beta |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.2 Search vendor "Mozilla" for product "Mozilla" and version "1.2" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.2 Search vendor "Mozilla" for product "Mozilla" and version "1.2" | alpha |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.2 Search vendor "Mozilla" for product "Mozilla" and version "1.2" | beta |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.2.1 Search vendor "Mozilla" for product "Mozilla" and version "1.2.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.3 Search vendor "Mozilla" for product "Mozilla" and version "1.3" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.3.1 Search vendor "Mozilla" for product "Mozilla" and version "1.3.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.4 Search vendor "Mozilla" for product "Mozilla" and version "1.4" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.4 Search vendor "Mozilla" for product "Mozilla" and version "1.4" | alpha |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.4 Search vendor "Mozilla" for product "Mozilla" and version "1.4" | beta |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.4.1 Search vendor "Mozilla" for product "Mozilla" and version "1.4.1" | - |
Affected
| ||||||
Mozilla Search vendor "Mozilla" | Mozilla Search vendor "Mozilla" for product "Mozilla" | 1.5 Search vendor "Mozilla" for product "Mozilla" and version "1.5" | - |
Affected
|