CVE-2007-1116

Publication date

2007-02-26 23:00:00

Family

mitre

State

PUBLISHED

Description

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browsers session history.