Beveiligingsadvies

CVE-2002-2437

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2011-12-07 19:00:00
Laatst bijgewerkt 2024-09-17 03:53:56
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The JavaScript implementation in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by calling this method.