Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user's hard drive by obscuring a file upload control and tricking the user into dragging text into that control.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2008-09-05 20:41
NVD link : CVE-2004-1449
Mitre link : CVE-2004-1449
CVE.ORG link : CVE-2004-1449
JSON object : View
Products Affected
mozilla
- mozilla
- thunderbird
firebirdsql
- firebird
CWE