Security Advisory

CVE-2005-0588

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-02-28 05:00:00
Last updated 2024-08-07 21:21:05
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.