CVE-2013-1696
26.06.2013, 03:19
Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, which allows remote attackers to conduct clickjacking attacks via a crafted web site that uses the HTTP server push feature with multipart responses.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mozilla | firefox | 𝑥 ≤ 21.0 |
| mozilla | firefox | 19.0 |
| mozilla | firefox | 19.0.1 |
| mozilla | firefox | 19.0.2 |
| mozilla | firefox | 20.0 |
| mozilla | firefox | 20.0.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References