Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user's hard drive by obscuring a file upload control and tricking the user into dragging text into that control.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-12-30 21:00
Updated : 2008-09-05 13:41
NVD link : CVE-2004-1449
Mitre link : CVE-2004-1449
JSON object : View
CWE
Products Affected
firebirdsql
- firebird
mozilla
- mozilla
- thunderbird