Back
CVE-2002-2359
Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote attackers to inject arbitrary web script or HTML via the title tag of an ftp URL.
Published: Dec 31, 2002
Modified: Jun 16, 2026
CWE-79
CVSS Metrics
Affected Products (4)
| Vendor | Product | Version |
|---|---|---|
| mozilla | mozilla | 1.0 |
| mozilla | mozilla | 1.0 |
| mozilla | mozilla | 1.0 |
| mozilla | mozilla | 1.1 |
GitHub Security Advisory GHSA-9gxv-jh66-5544
Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote...
References (8)
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0060.html
- http://bugzilla.mozilla.org/show_bug.cgi?id=154030
- http://www.iss.net/security_center/static/9757.php
- http://www.securityfocus.com/bid/5403 Exploit, Patch
- http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0060.html
- http://bugzilla.mozilla.org/show_bug.cgi?id=154030
- http://www.iss.net/security_center/static/9757.php
- http://www.securityfocus.com/bid/5403 Exploit, Patch
Risk Scores
CVSS Score
4.3 / 10
EPSS Score
3.76%
Top 11% most likely to be exploited
Threat Score
18.3 / 100
Data Sources
NVD
EPSS
GitHub