CVE-2002-2314

Mozilla 1.0 allows remote attackers to steal cookies from other domains via a javascript: URL with a leading "//" and ending in a newline, which causes the host/path check to fail.

Scoring

CVSS base score
0.66
EPSS probability
13.17%
Published
2007-10-26
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs