Firefox before 1.0.3, Mozilla Suite before 1.7.7, and Netscape 7.2 allows remote attackers to execute arbitrary script and code via a new search plugin using sidebar.addSearchEngine, aka "Firesearching 1."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.068
EPSS Ranking 90.8%