CVE-2002-2314
Mozilla 1.0 allows remote attackers to steal cookies from other domains via a javascript: URL with a leading "//" and ending in a newline, which causes the host/path check to fail.
- Affected products
- Mozilla Firefox
- Mozilla
- = 1.0
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 8.5% (95th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2007-10-26
CVE-2002-2314 at NVD
1 known exploit for CVE-2002-2314
Proof-of-concept code and exploit modules indexed by Sploitus