CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11796  CVE-2005-0590  Candidate  The installation confirmation dialog in Firefox before 1.0.1, Thunderbird before 1.0.1, and Mozilla before 1.7.6 allows remote attackers to use InstallTrigger to spoof the hostname of the host performing the installation via a long "user:pass" sequence in the URL, which appears before the real hostname.  Assigned (20050228)  None (candidate not yet proposed)    View
11797  CVE-2005-0591  Candidate  Firefox before 1.0.1 allows remote attackers to spoof the (1) security and (2) download modal dialog boxes, which could be used to trick users into executing script or downloading and executing a file, aka "Firespoofing."  Assigned (20050228)  None (candidate not yet proposed)    View
11798  CVE-2005-0592  Candidate  Heap-based buffer overflow in the UTF8ToNewUnicode function for Firefox before 1.0.1 and Mozilla before 1.7.6 might allow remote attackers to cause a denial of service (crash) or execute arbitrary code via invalid sequences in a UTF8 encoded string that result in a zero length value.  Assigned (20050228)  None (candidate not yet proposed)    View
11799  CVE-2005-0593  Candidate  Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote attackers to spoof the SSL "secure site" lock icon via (1) a web site that does not finish loading, which shows the lock of the previous site, (2) a non-HTTP server that uses SSL, which causes the lock to be displayed when the SSL handshake is completed, or (3) a URL that generates an HTTP 204 error, which updates the icon and location information but does not change the display of the original site.  Assigned (20050228)  None (candidate not yet proposed)    View
11800  CVE-2005-0594  Candidate  Buffer overflow in the Netinfo Setup Tool (NeST) allows local users to execute arbitrary code.  Assigned (20050228)  None (candidate not yet proposed)    View

Page 1254 of 20943, showing 5 records out of 104715 total, starting on record 6266, ending on 6270

Actions