Forum Moderators: open
[...] reported that a malicious web page hosted on a specially-coded FTP server could use this feature to perform a rudimentary port-scan of machines inside the firewall of the victim. By itself this causes no harm, but information about an internal network may be useful to an attacker should there be other vulnerabilities present on the network.[mozilla.org...]
Note: Firefox 1.5.0.x will be maintained with security and stability updates until April 24, 2007. All users are encouraged to upgrade to Firefox 2.[mozilla.org...]