Unrated severityNVD Advisory· Published May 9, 2005· Updated Jun 16, 2026
CVE-2005-1476
CVE-2005-1476
Description
Firefox 1.0.3 allows remote attackers to execute arbitrary Javascript in other domains by using an IFRAME and causing the browser to navigate to a previous javascript: URL, which can lead to arbitrary code execution when combined with CVE-2005-1477.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*range: <=1.0.3
- (no CPE)range: <=1.0.3
Patches
Vulnerability mechanics
References
19- secunia.com/advisories/15292nvdPatchVendor Advisory
- greyhatsecurity.org/vulntests/ffrc.htmnvdExploit
- www.mozilla.org/security/announce/mfsa2005-42.htmlnvdVendor Advisory
- www.kb.cert.org/vuls/id/534710nvdUS Government Resource
- ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txtnvd
- greyhatsecurity.org/firefox.htmnvd
- marc.infonvd
- marc.infonvd
- securitytracker.com/idnvd
- www.redhat.com/support/errata/RHSA-2005-434.htmlnvd
- www.redhat.com/support/errata/RHSA-2005-435.htmlnvd
- www.securityfocus.com/bid/13544nvd
- www.securityfocus.com/bid/15495nvd
- www.vupen.com/english/advisories/2005/0493nvd
- bugzilla.mozilla.org/show_bug.cginvd
- bugzilla.mozilla.org/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/20443nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100002nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10045nvd
News mentions
0No linked articles in our index yet.