CVE-2006-1725

Mozilla Firefox <1.5.0.2 & SeaMonkey <1.0.1 - XSS

Title source: llm
STIX 2.1

Description

Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allow user-assisted remote attackers to trick users into executing arbitrary code.

References (12)

Core 12
Core References
Exploit, Issue Tracking, Vendor Advisory x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=327014
Permissions Required, Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3748
Permissions Required, Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0083
Third Party Advisory, VDB Entry vendor-advisory x_refsource_hp
http://www.securityfocus.com/archive/1/446658/100/200/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25827
Permissions Required, Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/1356
Third Party Advisory, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19649
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17516
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22066
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19631

Scores

EPSS 0.0223
EPSS Percentile 80.9%

Details

CWE
CWE-264
Status published
Products (2)
mozilla/firefox 1.5 - 1.5.0.2
mozilla/seamonkey < 1.0.1
Published Apr 14, 2006
Tracked Since Feb 18, 2026