CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11791 | CVE-2005-0585 | Candidate | Firefox before 1.0.1 and Mozilla before 1.7.6 truncates long sub-domains or paths for display, which may allow remote malicious web sites to spoof legitimate sites and facilitate phishing attacks. | Assigned (20050228) | None (candidate not yet proposed) | View | |
11792 | CVE-2005-0586 | Candidate | Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to spoof the extensions of files to download via the Content-Disposition header, which could be used to trick users into downloading dangerous content. | Assigned (20050228) | None (candidate not yet proposed) | View | |
11793 | CVE-2005-0587 | Candidate | Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to overwrite arbitrary files by tricking the user into downloading a .LNK (link) file twice, which overwrites the file that was referenced in the first .LNK file. | Assigned (20050228) | None (candidate not yet proposed) | View | |
11794 | CVE-2005-0588 | Candidate | Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system. | Assigned (20050228) | None (candidate not yet proposed) | View | |
11795 | CVE-2005-0589 | Candidate | The Form Fill feature in Firefox before 1.0.1 allows remote attackers to steal potentially sensitive information via an input control that monitors the values that are generated by the autocomplete capability. | Assigned (20050228) | None (candidate not yet proposed) | View |
Page 1253 of 20943, showing 5 records out of 104715 total, starting on record 6261, ending on 6265