AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-0299

MEDIUM · CVSS 6.4 EPSS 2.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-02-02 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-0299
Severity
MEDIUM
CVSS
6.4
EPSS
2.02%
Exchange Firefox Java

Original NVD Description

The E4X implementation in Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 exposes the internal "AnyName" object to external interfaces, which allows multiple cooperating domains to exchange information in violation of the same origin restrictions.