The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T22:22:47.741Z
Reserved: 2005-07-13T00:00:00
Link: CVE-2005-2260

No data.

Status : Deferred
Published: 2005-07-13T04:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2005-2260
