DescriptionFirefox before 1.0.3, Mozilla Suite before 1.7.7, and Netscape 7.2 allows remote attackers to replace existing search plugins with malicious ones using sidebar.addSearchEngine and the same filename as the target engine, which may not be displayed in the GUI, which could then be used to execute malicious script, aka "Firesearching 2."
Overall state of this security issue: Resolved
This issue is currently rated as having important severity.
|National Vulnerability Database|
- SUSE-SA:2005:028, published Wed, 27 Apr 2005 15:00:00 +0000
List of released packages
|Product(s)||Fixed package version(s)||References|
|Novell Linux Desktop 9 for x86 |
Novell Linux Desktop 9 for x86_64
YOU Patch Nr: 10036
|SUSE LINUX 9.3|| |