EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf method on objects that were created outside of the sandbox.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-06-02 13:02
Updated : 2018-10-18 09:42
NVD link : CVE-2006-2787
Mitre link : CVE-2006-2787
JSON object : View
CWE
Products Affected
mozilla
- firefox
- thunderbird