4.6
CVE-2004-0905
- EPSS 6.61%
- Published 14.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.
Data is provided by the National Vulnerability Database (NVD)
Redhat ≫ Enterprise Linux Version2.1 Editionadvanced_server
Redhat ≫ Enterprise Linux Version2.1 Editionadvanced_server_ia64
Redhat ≫ Enterprise Linux Version2.1 Editionenterprise_server
Redhat ≫ Enterprise Linux Version2.1 Editionenterprise_server_ia64
Redhat ≫ Enterprise Linux Version2.1 Editionworkstation
Redhat ≫ Enterprise Linux Version2.1 Editionworkstation_ia64
Redhat ≫ Enterprise Linux Version3.0 Editionadvanced_server
Redhat ≫ Enterprise Linux Version3.0 Editionenterprise_server
Redhat ≫ Enterprise Linux Version3.0 Editionworkstation_server
Redhat ≫ Enterprise Linux Desktop Version3.0
Redhat ≫ Fedora Core Versioncore_1.0
Redhat ≫ Linux Advanced Workstation Version2.1 Editionia64
Redhat ≫ Linux Advanced Workstation Version2.1 Editionitanium_processor
Suse ≫ Suse Linux Version1.0 Editiondesktop
Suse ≫ Suse Linux Version8 Editionenterprise_server
Suse ≫ Suse Linux Version8.1
Suse ≫ Suse Linux Version8.2
Suse ≫ Suse Linux Version9.0
Suse ≫ Suse Linux Version9.0 Editionenterprise_server
Suse ≫ Suse Linux Version9.0 Editionx86_64
Suse ≫ Suse Linux Version9.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 6.61% | 0.908 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|