peter bassill · operator
$ cve CVE-2005-2262 JSON

CVE-2005-2262 EXPLOIT

5.1
MEDIUM · CVSS 2.0 · EPSS 6.5% (pctl 94)

Patch early

A public exploit exists.

Description

Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into using the "Set As Wallpaper" (in Firefox) or "Set as Background" (in Netscape) context menu on an image URL that is really a javascript: URL with an eval statement, aka "Firewalling."

Scoring

CVSS5.1 (MEDIUM, v2.0)
VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
EPSS6.55% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2005-07-13
Last modified2026-06-16

Affected (1)

VendorProduct
mozillafirefox

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD