Description
Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allow user-assisted remote attackers to trick users into executing arbitrary code.
References (12)
Core 12
Core References
Exploit, Issue Tracking, Vendor Advisory x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=327014
Permissions Required, Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3748
Permissions Required, Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0083
Third Party Advisory, VDB Entry vendor-advisory
x_refsource_hp
http://www.securityfocus.com/archive/1/446658/100/200/threaded
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25827
Permissions Required, Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2006/1356
Third Party Advisory, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/19649
Third Party Advisory vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1471
Vendor Advisory x_refsource_confirm
http://www.mozilla.org/security/announce/2006/mfsa2006-29.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/17516
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/22066
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/19631
Scores
EPSS
0.0223
EPSS Percentile
80.9%
Details
CWE
CWE-264
Status
published
Products (2)
mozilla/firefox
1.5 - 1.5.0.2
mozilla/seamonkey
< 1.0.1
Published
Apr 14, 2006
Tracked Since
Feb 18, 2026