vendor:
Firefox, Mozilla Suite, Mozilla Thunderbird
by:
hdm, Aviv Raff
N/A
CVSS
N/A
Code Execution
119
CWE
Product Name: Firefox, Mozilla Suite, Mozilla Thunderbird
Affected Version From: Firefox < 1.0.5, Mozilla < 1.7.10
Affected Version To: Firefox < 1.0.5, Mozilla < 1.7.10
Patch Exists: YES
Related CWE: CVE-2005-2265
CPE: a:mozilla:firefox
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=21844, https://www.infosecmatter.com/nessus-plugin-library/?id=18689, https://www.infosecmatter.com/nessus-plugin-library/?id=19269, https://www.infosecmatter.com/nessus-plugin-library/?id=19476, https://www.infosecmatter.com/nessus-plugin-library/?id=19685, https://www.infosecmatter.com/nessus-plugin-library/?id=19478, https://www.infosecmatter.com/nessus-plugin-library/?id=20544, https://www.infosecmatter.com/nessus-plugin-library/?id=19888, https://www.infosecmatter.com/nessus-plugin-library/?id=19345, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/multi/browser/mozilla_compareto
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2005
Mozilla Suite/Firefox InstallVersion->compareTo() Code Execution
This module exploits a code execution vulnerability in the Mozilla Suite, Mozilla Firefox, and Mozilla Thunderbird applications. This exploit module is a direct port of Aviv Raff's HTML PoC.
Mitigation:
Update to the latest version of Mozilla Suite, Mozilla Firefox, and Mozilla Thunderbird applications.