Back to search
CVE-2007-1678
Published: Mar 26, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in the Fizzle 0.5 extension for Firefox allows remote attackers to inject arbitrary web script or HTML via RSS feeds, which are executed by the chrome: URI handler.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
24654
third-party-advisory
x_refsource_SECUNIA
2480
third-party-advisory
x_refsource_SREASON
20070324 Fizzle : Firefox Extension Vulnerability
mailing-list
x_refsource_BUGTRAQ
23144
vdb-entry
x_refsource_BID
33522
vdb-entry
x_refsource_OSVDB
fizzle-rssfeed-xss(33227)
vdb-entry
x_refsource_XF
ADV-2007-1112
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now