Mozilla.Firefox.And.SeaMonkey.Content.Injection.Spoofing

description-logoDescription

This indicates an attack attempt to exploit a Content Injection Spoofing vulnerability in Mozilla products.
This issue is caused by an error in the vulnerable software when handling a web page with an invalid url that is passed to "document.location". It may allow remote attackers to execute arbitrary code by sending a crafted web page.

affected-products-logoAffected Products

Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6
SeaMonkey before 2.0.1

Impact logoImpact

Information Spoofing

recomended-action-logoRecommended Actions

Refer to the vendor's web site for suggested workaround.
http://www.mozilla.org/security/announce/2009/mfsa2009-69.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2021-01-11 16.995
2020-10-12 16.941 Name:Mozilla.
Firefox.
And.
Sea.
Monkey.
Content.
Injection.
Spoofing:Mozilla.
Firefox.
And.
SeaMonkey.
Content.
Injection.
Spoofing