CVE-2007-3145

Visual truncation vulnerability in Galeon 2.0.1 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.
Configurations

Configuration 1 (hide)

cpe:2.3:a:galeon:galeon_browser:2.0.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:32

Type Values Removed Values Added
References () http://osvdb.org/43467 - () http://osvdb.org/43467 -
References () http://testing.bitsploit.de/test.html - () http://testing.bitsploit.de/test.html -
References () http://www.0x000000.com/?i=334 - Exploit () http://www.0x000000.com/?i=334 - Exploit
References () http://www.securityfocus.com/bid/24352 - Exploit () http://www.securityfocus.com/bid/24352 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/34983 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/34983 -

Information

Published : 2007-06-11 18:30

Updated : 2024-11-21 00:32


NVD link : CVE-2007-3145

Mitre link : CVE-2007-3145

CVE.ORG link : CVE-2007-3145


JSON object : View

Products Affected

galeon

  • galeon_browser