Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-0401

EPSS 3.85% · P88
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-0401

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka "Firescrolling 2."
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Firefox处理XUL文件漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Firefox处理XUL内容的方式存在漏洞,攻击者可能利用此漏洞诱使用户加载恶意XUL内容。 如果恶意的网页能够诱骗用户拖放对象的话,就可能加载恶意的XUL内容。尽管已经发布了Firefox 1.0.1补丁修复这个漏洞,但攻击者仍可劫持拖放操作,打开特权xul文件,进而展开其他攻击,可能导致受害用户的机器上执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-0401

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0401

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-03-24 · 35 CVEs total

CVE-2005-0858CoolForum SQL注入漏洞
CVE-2005-0850FileZilla FTP Server多个远程拒绝服务漏洞
CVE-2005-0851FileZilla FTP Server多个远程拒绝服务漏洞
CVE-2005-0852Microsoft Windows原始IP over IP套接字本地拒绝服务漏洞
CVE-2005-0853Betaparticle Blog多个远程漏洞
CVE-2005-0854Betaparticle Blog多个远程漏洞
CVE-2005-0855CoolForum 0.8.1 beta漏洞
CVE-2005-0856CoolForum SQL注入漏洞
CVE-2005-0857CoolForum跨站脚本和SQL注入漏洞
CVE-2005-0849FUN labs多个远程拒绝服务漏洞
CVE-2005-0859CzarNews远程文件包含漏洞
CVE-2005-0860TRG News Script远程文件包含漏洞
CVE-2005-0861DeleGate多个未明缓冲区溢出漏洞
CVE-2005-0862PHPOpenChat多个远程文件包含漏洞
CVE-2005-0863PHPOpenChat多个HTML注入漏洞
CVE-2005-0864三星DSL调制解调器多个远程安全漏洞
CVE-2005-0865三星DSL调制解调器多个远程安全漏洞
CVE-2005-0841PHPMyFamily多个SQL注入漏洞
CVE-2001-1429Midnight Commander mcedit缓冲区溢出漏洞
CVE-2001-1430Cayman-DSL路由器不安全默认账户漏洞

Showing top 20 of 35 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-0401

No comments yet


Leave a comment