Back

MEDIUM

mozilla: multiple file input focus stealing vulnerabilities

Published Feb 8, 2008

Description

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

Affected products

Remediation

Red Hat statement

The Red Hat Product Security has rated this issue as having moderate security impact, a future updates will address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Metrics

References (43)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Feb 8, 2008
Updated Aug 7, 2024
Reserved Jan 23, 2008
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Feb 7, 2008