CVE
- Id
- 28694
- CVE No.
- CVE-2007-5337
- Status
- Candidate
- Description
- Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.
- Phase
- Assigned (20071010)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
299220 | 28694 | CVE-2007-5337 | BUGTRAQ:20071029 FLEA-2007-0062-1 firefox | View |
299221 | 28694 | CVE-2007-5337 | URL:http://www.securityfocus.com/archive/1/archive/1/482925/100/0/threaded | View |
299222 | 28694 | CVE-2007-5337 | BUGTRAQ:20071026 rPSA-2007-0225-1 firefox | View |
299223 | 28694 | CVE-2007-5337 | URL:http://www.securityfocus.com/archive/1/archive/1/482876/100/200/threaded | View |
299224 | 28694 | CVE-2007-5337 | BUGTRAQ:20071029 rPSA-2007-0225-2 firefox thunderbird | View |
299225 | 28694 | CVE-2007-5337 | URL:http://www.securityfocus.com/archive/1/archive/1/482932/100/200/threaded | View |
299226 | 28694 | CVE-2007-5337 | MISC:https://bugzilla.mozilla.org/show_bug.cgi?id=381146 | View |
299227 | 28694 | CVE-2007-5337 | CONFIRM:http://www.mozilla.org/security/announce/2007/mfsa2007-34.html | View |
299228 | 28694 | CVE-2007-5337 | CONFIRM:https://issues.rpath.com/browse/RPL-1858 | View |
299229 | 28694 | CVE-2007-5337 | CONFIRM:http://support.novell.com/techcenter/psdb/60eb95b75c76f9fbfcc9a89f99cd8f79.html | View |
299230 | 28694 | CVE-2007-5337 | DEBIAN:DSA-1396 | View |
299231 | 28694 | CVE-2007-5337 | URL:http://www.debian.org/security/2007/dsa-1396 | View |
299232 | 28694 | CVE-2007-5337 | DEBIAN:DSA-1401 | View |
299233 | 28694 | CVE-2007-5337 | URL:http://www.debian.org/security/2007/dsa-1401 | View |
299234 | 28694 | CVE-2007-5337 | DEBIAN:DSA-1392 | View |
299235 | 28694 | CVE-2007-5337 | URL:http://www.debian.org/security/2007/dsa-1392 | View |
299236 | 28694 | CVE-2007-5337 | FEDORA:FEDORA-2007-2601 | View |
299237 | 28694 | CVE-2007-5337 | URL:https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00285.html | View |
299238 | 28694 | CVE-2007-5337 | FEDORA:FEDORA-2007-2664 | View |
299239 | 28694 | CVE-2007-5337 | URL:https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00355.html | View |
299240 | 28694 | CVE-2007-5337 | FEDORA:FEDORA-2007-3431 | View |
299241 | 28694 | CVE-2007-5337 | URL:https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00498.html | View |
299242 | 28694 | CVE-2007-5337 | GENTOO:GLSA-200711-14 | View |
299243 | 28694 | CVE-2007-5337 | URL:http://www.gentoo.org/security/en/glsa/glsa-200711-14.xml | View |
299244 | 28694 | CVE-2007-5337 | HP:HPSBUX02153 | View |
299245 | 28694 | CVE-2007-5337 | URL:http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742 | View |
299246 | 28694 | CVE-2007-5337 | HP:SSRT061181 | View |
299247 | 28694 | CVE-2007-5337 | URL:http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742 | View |
299248 | 28694 | CVE-2007-5337 | MANDRIVA:MDKSA-2007:202 | View |
299249 | 28694 | CVE-2007-5337 | URL:http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:202 | View |
299250 | 28694 | CVE-2007-5337 | REDHAT:RHSA-2007:0979 | View |
299251 | 28694 | CVE-2007-5337 | URL:http://www.redhat.com/support/errata/RHSA-2007-0979.html | View |
299252 | 28694 | CVE-2007-5337 | REDHAT:RHSA-2007:0980 | View |
299253 | 28694 | CVE-2007-5337 | URL:http://www.redhat.com/support/errata/RHSA-2007-0980.html | View |
299254 | 28694 | CVE-2007-5337 | REDHAT:RHSA-2007:0981 | View |
299255 | 28694 | CVE-2007-5337 | URL:http://www.redhat.com/support/errata/RHSA-2007-0981.html | View |
299256 | 28694 | CVE-2007-5337 | SUNALERT:201516 | View |
299257 | 28694 | CVE-2007-5337 | URL:http://sunsolve.sun.com/search/document.do?assetkey=1-66-201516-1 | View |
299258 | 28694 | CVE-2007-5337 | SUSE:SUSE-SA:2007:057 | View |
299259 | 28694 | CVE-2007-5337 | URL:http://www.novell.com/linux/security/advisories/2007_57_mozilla.html | View |
299260 | 28694 | CVE-2007-5337 | UBUNTU:USN-535-1 | View |
299261 | 28694 | CVE-2007-5337 | URL:http://www.ubuntulinux.org/support/documentation/usn/usn-535-1 | View |
299262 | 28694 | CVE-2007-5337 | UBUNTU:USN-536-1 | View |
299263 | 28694 | CVE-2007-5337 | URL:http://www.ubuntu.com/usn/usn-536-1 | View |
299264 | 28694 | CVE-2007-5337 | BID:26132 | View |
299265 | 28694 | CVE-2007-5337 | URL:http://www.securityfocus.com/bid/26132 | View |
299266 | 28694 | CVE-2007-5337 | OVAL:oval:org.mitre.oval:def:11443 | View |
299267 | 28694 | CVE-2007-5337 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11443 | View |
299268 | 28694 | CVE-2007-5337 | VUPEN:ADV-2007-3544 | View |
299269 | 28694 | CVE-2007-5337 | URL:http://www.vupen.com/english/advisories/2007/3544 | View |
299270 | 28694 | CVE-2007-5337 | VUPEN:ADV-2007-3587 | View |
299271 | 28694 | CVE-2007-5337 | URL:http://www.vupen.com/english/advisories/2007/3587 | View |
299272 | 28694 | CVE-2007-5337 | VUPEN:ADV-2008-0083 | View |
299273 | 28694 | CVE-2007-5337 | URL:http://www.vupen.com/english/advisories/2008/0083 | View |
299274 | 28694 | CVE-2007-5337 | SECTRACK:1018837 | View |
299275 | 28694 | CVE-2007-5337 | URL:http://securitytracker.com/id?1018837 | View |
299276 | 28694 | CVE-2007-5337 | SECUNIA:27276 | View |
299277 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27276 | View |
299278 | 28694 | CVE-2007-5337 | SECUNIA:27325 | View |
299279 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27325 | View |
299280 | 28694 | CVE-2007-5337 | SECUNIA:27327 | View |
299281 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27327 | View |
299282 | 28694 | CVE-2007-5337 | SECUNIA:27335 | View |
299283 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27335 | View |
299284 | 28694 | CVE-2007-5337 | SECUNIA:27356 | View |
299285 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27356 | View |
299286 | 28694 | CVE-2007-5337 | SECUNIA:27383 | View |
299287 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27383 | View |
299288 | 28694 | CVE-2007-5337 | SECUNIA:27425 | View |
299289 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27425 | View |
299290 | 28694 | CVE-2007-5337 | SECUNIA:27403 | View |
299291 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27403 | View |
299292 | 28694 | CVE-2007-5337 | SECUNIA:27480 | View |
299293 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27480 | View |
299294 | 28694 | CVE-2007-5337 | SECUNIA:27387 | View |
299295 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27387 | View |
299296 | 28694 | CVE-2007-5337 | SECUNIA:27298 | View |
299297 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27298 | View |
299298 | 28694 | CVE-2007-5337 | SECUNIA:27336 | View |
299299 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27336 | View |
299300 | 28694 | CVE-2007-5337 | SECUNIA:27665 | View |
299301 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27665 | View |
299302 | 28694 | CVE-2007-5337 | SECUNIA:27414 | View |
299303 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27414 | View |
299304 | 28694 | CVE-2007-5337 | SECUNIA:27680 | View |
299305 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27680 | View |
299306 | 28694 | CVE-2007-5337 | SECUNIA:27360 | View |
299307 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/27360 | View |
299308 | 28694 | CVE-2007-5337 | SECUNIA:28398 | View |
299309 | 28694 | CVE-2007-5337 | URL:http://secunia.com/advisories/28398 | View |
299310 | 28694 | CVE-2007-5337 | XF:mozilla-sftp-file-access(37287) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
52192 | JVNDB-2007-000882 | Mozilla 製品における複数のサービス運用妨害 (DoS) の脆弱性 | Mozilla 製品には不正な HTML を処理した際に、複数のサービス運用妨害 (DoS) 状態となる脆弱性が存在します。 | CVE-2007-5339 | 28694 | 4.3 | http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-000882.html | View |