CVE-2007-2060

N/A Unknown
Published: April 18, 2007 Modified: April 23, 2026
View on NVD

Description

Cross-zone scripting vulnerability in the Wizz RSS Reader before 2.1.9 extension to Mozilla Firefox allows remote attackers to execute arbitrary Javascript in the browser chrome via the RSS feed DOM.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/34534
Source: cve@mitre.org
http://www.kb.cert.org/vuls/id/319464
Source: cve@mitre.org
Patch US Government Resource
http://osvdb.org/34534
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/24913
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/319464
Source: af854a3a-2127-422b-91ae-364da2661108
Patch US Government Resource
http://www.kb.cert.org/vuls/id/MIMG-6ZKP4T
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/23523
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/1425
Source: af854a3a-2127-422b-91ae-364da2661108
https://addons.mozilla.org/en-US/firefox/addon/424
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/33693
Source: af854a3a-2127-422b-91ae-364da2661108

18 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
3.6%
88th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

wizz_computers