CVE-2006-4569
Summary
| CVE | CVE-2006-4569 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-09-15 19:07:00 UTC |
| Updated | 2018-10-17 21:37:00 UTC |
| Description | The popup blocker in Mozilla Firefox before 1.5.0.7 opens the "blocked popups" display in the context of the Location bar instead of the subframe from which the popup originated, which might make it easier for remote user-assisted attackers to conduct cross-site scripting (XSS) attacks. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Repository / Oval Repository | OVAL | oval.cisecurity.org | |
| Avaya Products Firefox Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| [#RPL-640] update to firefox 1.5.0.7 and thunderbird 1.5.0.7 for critical security fixes - rPath JIRA | CONFIRM | issues.rpath.com | |
| Ubuntu update for firefox - Advisories - Secunia | SECUNIA | secunia.com | |
| Mandriva update for mozilla-firefox - Advisories - Secunia | SECUNIA | secunia.com | |
| rPath updates for firefox and thunderbird - Advisories - Secunia | SECUNIA | secunia.com | |
| Security Announcement | SUSE | www.novell.com | |
| Gentoo update for mozilla-firefox - Advisories - Secunia | SECUNIA | secunia.com | |
| Red Hat update for firefox - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| HP-UX update for firefox - Advisories - Secunia | SECUNIA | secunia.com | |
| Webmail - OVH | VUPEN | www.vupen.com | |
| Gentoo Linux Documentation -- Mozilla Firefox: Multiple vulnerabilities | GENTOO | security.gentoo.org | |
| usn/usn-354-1 - Ubuntu: Linux for human beings | UBUNTU | www.ubuntu.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| ASA-2006-224 (RHSA-2006-0675) | CONFIRM | support.avaya.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| SecurityTracker.com Archives - Mozilla Firefox Input Validation Flaw in Popup Blocking Permits Cross-Site Scripting Attacks | SECTRACK | securitytracker.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| MFSA 2006-62: Popup-blocker cross-site scripting (XSS) | CONFIRM | www.mozilla.org | Vendor Advisory |
| Ubuntu update for firefox - Advisories - Secunia | SECUNIA | secunia.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| Netscape Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| Mozilla Firefox/Thunderbird/Seamonkey Multiple Remote Vulnerabilities | BID | www.securityfocus.com | |
| usn/usn-351-1 - Ubuntu: Linux for human beings | UBUNTU | www.ubuntu.com | |
| SUSE updates for MozillaFirefox, MozillaThunderbird, and seamonkey - Advisories - Secunia | SECUNIA | secunia.com | |
| rhn.redhat.com | Red Hat Support | REDHAT | www.redhat.com | |
| IT Resource Center - login / register | HP | www1.itrc.hp.com | |
| Advisories - Mandriva Linux | MANDRIVA | www.mandriva.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.