Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote attackers to inject arbitrary web script or HTML via the title tag of an ftp URL.
| Software | From | Fixed in |
|---|---|---|
| mozilla / mozilla | 1.0-rc1 | 1.0-rc1.x |
| mozilla / mozilla | 1.0-rc2 | 1.0-rc2.x |
| mozilla / mozilla | 1.0 | 1.0.x |
| mozilla / mozilla | 1.1-alpha | 1.1-alpha.x |