Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-0590
Description:The installation confirmation dialog in Firefox before 1.0.1, Thunderbird before 1.0.1, and Mozilla before 1.7.6 allows remote attackers to use InstallTrigger to spoof the hostname of the host performing the installation via a long "user:pass" sequence in the URL, which appears before the real hostname.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-0590
12659
http://www.securityfocus.com/bid/12659
19823
http://secunia.com/advisories/19823
GLSA-200503-10
http://www.gentoo.org/security/en/glsa/glsa-200503-10.xml
GLSA-200503-30
http://www.gentoo.org/security/en/glsa/glsa-200503-30.xml
RHSA-2005:176
http://www.redhat.com/support/errata/RHSA-2005-176.html
RHSA-2005:384
http://www.redhat.com/support/errata/RHSA-2005-384.html
SUSE-SA:2006:022
http://www.novell.com/linux/security/advisories/2006_04_25.html
http://www.mozilla.org/security/announce/mfsa2005-17.html
http://www.mozilla.org/security/announce/mfsa2005-17.html
https://bugzilla.mozilla.org/show_bug.cgi?id=268059
https://bugzilla.mozilla.org/show_bug.cgi?id=268059
oval:org.mitre.oval:def:100041
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100041
oval:org.mitre.oval:def:10010
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10010




© 1998-2025 E-Soft Inc. All rights reserved.