CVE

Id
13470  
CVE No.
CVE-2005-2264  
Status
Candidate  
Description
Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.  
Phase
Assigned (20050713)  
Votes
None (candidate not yet proposed)  
Comments