Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-2395

Опубликовано: 27 июл. 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the strongest authentication scheme available as required by RFC2617, which might cause credentials to be sent in plaintext even if an encrypted channel is available.

РелизСтатусПримечание
dapper

ignored

devel

ignored

no upstream fixes
edgy

ignored

feisty

ignored

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 74%
0.00794
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 22 лет назад

Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the strongest authentication scheme available as required by RFC2617, which might cause credentials to be sent in plaintext even if an encrypted channel is available.

nvd
больше 20 лет назад

Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the strongest authentication scheme available as required by RFC2617, which might cause credentials to be sent in plaintext even if an encrypted channel is available.

debian
больше 20 лет назад

Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the ...

github
почти 4 года назад

Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the strongest authentication scheme available as required by RFC2617, which might cause credentials to be sent in plaintext even if an encrypted channel is available.

EPSS

Процентиль: 74%
0.00794
Низкий

5 Medium

CVSS2