CVE-2007-1562

CVSS v2.0 6.8 (Medium)
68% Progress
EPSS 3.66 % (92th)
3.66% Progress
Affected Products 2
Advisories 6

The FTP protocol implementation in Mozilla Firefox before 1.5.0.11 and 2.x before 2.0.0.3 allows remote attackers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response.

Weaknesses
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2007-03-21 19:19:00
(17 years ago)
Updated Date
2020-12-09 10:15:12
(3 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox from 1.5 version and prior 1.5.0.11 version cpe:2.3:a:mozilla:firefox >= 1.5 < 1.5.0.11
  Mozilla Firefox from 2.0 version and prior 2.0.0.3 version cpe:2.3:a:mozilla:firefox >= 2.0 < 2.0.0.3

Configuration #2

    CPE23 From Up To
  Canonical Ubuntu Linux 5.10 cpe:2.3:o:canonical:ubuntu_linux:5.10
  Canonical Ubuntu Linux 6.06 cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts
  Canonical Ubuntu Linux 6.10 cpe:2.3:o:canonical:ubuntu_linux:6.10
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...