Beveiligingsadvies

CVE-2007-3827

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2007-07-17 21:00:00
Laatst bijgewerkt 2024-08-07 14:28:52
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Mozilla Firefox allows for cookies to be set with a null domain (aka "domainless cookies"), which allows remote attackers to pass information between arbitrary domains and track user activity, as demonstrated by the domain attribute in the document.cookie variable in a javascript: window.