Show filters
302 Total Results
Displaying 301-302 of 302
Sort by:
Attacker Value
Unknown
CVE-2006-0296
Disclosure Date: February 02, 2006 (last updated February 22, 2025)
The XULDocument.persist function in Mozilla, Firefox before 1.5.0.1, and SeaMonkey before 1.0 does not validate the attribute name, which allows remote attackers to execute arbitrary Javascript by injecting RDF data into the user's localstore.rdf file.
0
Attacker Value
Unknown
CVE-2006-0294
Disclosure Date: February 02, 2006 (last updated February 22, 2025)
Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 allow remote attackers to execute arbitrary code by changing an element's style from position:relative to position:static, which causes Gecko to operate on freed memory.
0