CVE-2007-3737
Mozilla Firefox before 2.0.0.5 allows remote attackers to execute arbitrary code with chrome privileges by calling an event handler from an unspecified "element outside of a document."
Date published : 2007-07-18
http://www.securityfocus.com/bid/24946
http://www.securityfocus.com/archive/1/474226/100/0/threaded