CVE-2007-0981
high · 7.5Mozilla based browsers, including Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8, allow remote attackers to bypass the same origin policy, steal cookies, and conduct other attacks by writing a URI with a null byte to the hostname (location.hostname) DOM property, due to interactions with DNS resolver code.
7.5
CVSS
12.5%
EPSS (exploit prob.)
96th
EPSS percentile
2007-02-16
Published
AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
CWE-264
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| mozilla | firefox | <= 1.5.0.9 |
| mozilla | firefox | 0.8 |
| mozilla | firefox | 0.9 |
| mozilla | firefox | 0.9 |
| mozilla | firefox | 0.9.1 |
| mozilla | firefox | 0.9.2 |
| mozilla | firefox | 0.9.3 |
| mozilla | firefox | 0.10 |
| mozilla | firefox | 0.10.1 |
| mozilla | firefox | 1.0 |
| mozilla | firefox | 1.0.1 |
| mozilla | firefox | 1.0.2 |
| mozilla | firefox | 1.0.3 |
| mozilla | firefox | 1.0.4 |
| mozilla | firefox | 1.0.5 |
| mozilla | firefox | 1.0.6 |
| mozilla | firefox | 1.0.6 |
| mozilla | firefox | 1.0.7 |
| mozilla | firefox | 1.0.8 |
| mozilla | firefox | 1.5 |
| mozilla | firefox | 1.5 |
| mozilla | firefox | 1.5 |
| mozilla | firefox | 1.5.0.1 |
| mozilla | firefox | 1.5.0.2 |
| mozilla | firefox | 1.5.0.3 |
| mozilla | firefox | 1.5.0.4 |
| mozilla | firefox | 1.5.0.5 |
| mozilla | firefox | 1.5.0.6 |
| mozilla | firefox | 1.5.0.7 |
| mozilla | firefox | 1.5.0.8 |
| mozilla | firefox | 1.5.1 |
| mozilla | firefox | 1.5.2 |
| mozilla | firefox | 1.5.3 |
| mozilla | firefox | 1.5.4 |
| mozilla | firefox | 1.5.5 |
| mozilla | firefox | 1.5.6 |
| mozilla | firefox | 1.5.7 |
| mozilla | firefox | 1.5.8 |
| mozilla | firefox | 2.0 |
| mozilla | firefox | 2.0 |
Check a specific version with /api/v1/cve/match.
References
- ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.asc
- ftp://patches.sgi.com/support/free/security/advisories/20070301-01-P.asc
- http://fedoranews.org/cms/node/2713
- http://fedoranews.org/cms/node/2728
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
- http://lcamtuf.dione.cc/ffhostname.html
- http://lists.suse.com/archive/suse-security-announce/2007-Mar/0001.html
- http://rhn.redhat.com/errata/RHSA-2007-0077.html
- http://secunia.com/advisories/24175
- http://secunia.com/advisories/24205
- http://secunia.com/advisories/24238
- http://secunia.com/advisories/24287
- http://secunia.com/advisories/24290
- http://secunia.com/advisories/24293
- http://secunia.com/advisories/24320
- http://secunia.com/advisories/24328
- http://secunia.com/advisories/24333
- http://secunia.com/advisories/24342
- http://secunia.com/advisories/24343
- http://secunia.com/advisories/24384
- http://secunia.com/advisories/24393
- http://secunia.com/advisories/24395
- http://secunia.com/advisories/24437
- http://secunia.com/advisories/24455
- http://secunia.com/advisories/24457
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2007-0981