CVE-2008-2419
Mozilla Firefox 2.0.0.14 - Remote Code Execution via Iframe Java Applet Error
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2419. PoCs published by 0x000000.
AI-analyzed exploit summary This exploit targets a denial-of-service vulnerability in Mozilla Firefox by executing JavaScript commands on empty applets within an iframe. The PoC crashes the browser by manipulating the applet element in a specific way.
Description
Mozilla Firefox 2.0.0.14 allows remote attackers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code by triggering an error condition during certain Iframe operations between a JSframe write and a JSframe close, as demonstrated by an error in loading an empty Java applet defined by a 'src="javascript:"' sequence.
Exploits (1)
This exploit targets a denial-of-service vulnerability in Mozilla Firefox by executing JavaScript commands on empty applets within an iframe. The PoC crashes the browser by manipulating the applet element in a specific way.