CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11349  CVE-2005-0143  Candidate  Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks.  Assigned (20050125)  None (candidate not yet proposed)    View
11350  CVE-2005-0144  Candidate  Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phishing attacks.  Assigned (20050125)  None (candidate not yet proposed)    View
11351  CVE-2005-0145  Candidate  Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user uses the Alt-click feature.  Assigned (20050125)  None (candidate not yet proposed)    View
11352  CVE-2005-0146  Candidate  Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click performs a paste operation.  Assigned (20050125)  None (candidate not yet proposed)    View
11353  CVE-2005-0147  Candidate  Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials.  Assigned (20050125)  None (candidate not yet proposed)    View

Page 19864 of 20943, showing 5 records out of 104715 total, starting on record 99316, ending on 99320

Actions