CVE-2005-2260

7.5
CVSS v2.0 Base Score
3.26%
LOW RiskEPSS (88th percentile)
NVD-CWE-Other

The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.

Published: 7/13/2005
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

7.5

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Score (Exploitation Probability)

3.26%LOW Exploitation Risk
88th percentile

This vulnerability has a 3.26% probability of being exploited in the next 30 days, ranking higher than 88% of all scored CVEs.

CWE Classification

NVD-CWE-Other
Advertisement