Vulnerability Description
Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allow user-assisted remote attackers to trick users into executing arbitrary code.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mozilla | Firefox | >= 1.5, < 1.5.0.2 |
| Mozilla | Seamonkey | < 1.0.1 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/19631Third Party Advisory
- http://secunia.com/advisories/19649Third Party AdvisoryVendor Advisory
- http://secunia.com/advisories/22066Third Party Advisory
- http://www.mozilla.org/security/announce/2006/mfsa2006-29.htmlVendor Advisory
- http://www.securityfocus.com/archive/1/446658/100/200/threaded
- http://www.securityfocus.com/bid/17516Third Party AdvisoryVDB Entry
- http://www.vupen.com/english/advisories/2006/1356Permissions RequiredThird Party Advisory
- http://www.vupen.com/english/advisories/2006/3748Permissions RequiredThird Party Advisory
- http://www.vupen.com/english/advisories/2008/0083Permissions RequiredThird Party Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=327014ExploitIssue TrackingVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25827Third Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Third Party Advisory
- http://secunia.com/advisories/19631Third Party Advisory
- http://secunia.com/advisories/19649Third Party AdvisoryVendor Advisory
- http://secunia.com/advisories/22066Third Party Advisory
FAQ
What is CVE-2006-1725?
CVE-2006-1725 is a vulnerability with a CVSS score of 2.6 (LOW). Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allo...
How severe is CVE-2006-1725?
CVE-2006-1725 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-1725?
Check the references section above for vendor advisories and patch information. Affected products include: Mozilla Firefox, Mozilla Seamonkey.