[Japanese] | |
JVNDB-2007-000779 | |
MouseoverDictionary vulnerable to arbitrary script execution | |
Overview | |
MouseoverDictionary, an add-on for Mozilla Firefox, contains a vulnerability that allows an attacker to execute an arbitrary script. | |
CVSS Severity (What is CVSS?) | |
CVSS V2 Severity:
Base Metrics 5.8 (Medium) [IPA Score]
| |
Affected Products | |
| |
Ichiro Maruta | |
| |
Impact | |
An attacker could execute an arbitrary script in Mozilla Firefox when the user uses MouseoverDictionary. Depending on the script, the attacker may be able to view arbitrary files on the client PC. | |
Solution | |
[Update the Software] | |
Vendor Information | |
Ichiro Maruta | |
CWE (What is CWE?) | |
| |
CVE (What is CVE?) | |
| |
References | |
| |
Revision History | |
|
Date Public | 2007/10/12 |
Date First Published | 2008/05/21 |
Date Last Updated | 2008/05/21 |