Mozilla FTP View Cross-Site...

- AV AC AU C I A
发布: 2002-08-06
修订: 2025-04-13

A cross-site scripting vulnerability in Mozilla has been reported. When viewing the contents of a FTP site as web content from a ftp:// URL, the directory name is included in the HTML representation. It is not adequately sanitized before this occurs. An attacker may embed javascript as this value between opening and closing "<title>" tags in a FTP URL.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息