CVE-2006-1735
Currently unrated
Key Information:
- Vendor
- Mozilla
- Vendor
- CVE Published:
- 14 April 2006
Summary
Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to execute arbitrary code by using an eval in an XBL method binding (XBL.method.eval) to create Javascript functions that are compiled with extra privileges.
References
EPSS Score
97% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved