Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, which allows remote attackers to conduct clickjacking attacks via a crafted web site that uses the HTTP server push feature with multipart responses.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-06T15:13:32.755Z
Reserved: 2013-02-13T00:00:00
Link: CVE-2013-1696

No data.

Status : Modified
Published: 2013-06-26T03:19:10.883
Modified: 2024-11-21T01:50:10.687
Link: CVE-2013-1696
