CVE-2007-3144

Visual truncation vulnerability in Mozilla 1.7.12 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:mozilla:1.7.12:*:*:*:*:*:*:*

History

21 Nov 2024, 00:32

Type Values Removed Values Added
References () http://osvdb.org/43466 - () http://osvdb.org/43466 -
References () http://testing.bitsploit.de/test.html - () http://testing.bitsploit.de/test.html -
References () http://www.0x000000.com/?i=334 - Exploit () http://www.0x000000.com/?i=334 - Exploit
References () http://www.securityfocus.com/bid/24352 - Exploit () http://www.securityfocus.com/bid/24352 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/34983 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/34983 -

Information

Published : 2007-06-11 18:30

Updated : 2024-11-21 00:32


NVD link : CVE-2007-3144

Mitre link : CVE-2007-3144

CVE.ORG link : CVE-2007-3144


JSON object : View

Products Affected

mozilla

  • mozilla