CVE

Id
11437  
CVE No.
CVE-2005-0231  
Status
Candidate  
Description
Firefox 1.0 does not invoke the Javascript Security Manager when a user drags a javascript: or data: URL to a tab, which allows remote attackers to bypass the security model, aka "firetabbing."  
Phase
Assigned (20050207)  
Votes
None (candidate not yet proposed)  
Comments