Описание
Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.
Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-4357
- http://my.opera.com/MichalBucko/blog/firefox-2-0-0-5-uri-encoding-allows-phishing
- http://www.eleytt.com/michal.bucko/Eleytt_PhishAGoGo/bucked2.html
- http://www.securityfocus.com/archive/1/475467/100/100/threaded
- http://www.securityfocus.com/archive/1/475531/100/100/threaded
- http://www.securityfocus.com/archive/1/475651/100/0/threaded
- http://www.securityfocus.com/archive/1/475970/100/0/threaded
- http://www.securityfocus.com/archive/1/476062/100/0/threaded
EPSS
CVE ID
Связанные уязвимости
Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.
Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.
Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof t ...
EPSS