Back

CVE-2002-2359

Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote attackers to inject arbitrary web script or HTML via the title tag of an ftp URL.

Published: Dec 31, 2002 Modified: Jun 16, 2026
CWE-79

CVSS Metrics

Affected Products (4)

Vendor Product Version
mozilla mozilla 1.0
mozilla mozilla 1.0
mozilla mozilla 1.0
mozilla mozilla 1.1

GitHub Security Advisory GHSA-9gxv-jh66-5544

Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote...

Risk Scores

CVSS Score 4.3 / 10
EPSS Score 3.76%

Top 11% most likely to be exploited

Threat Score 18.3 / 100

Data Sources

NVD EPSS GitHub