CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11349 | CVE-2005-0143 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks. | Assigned (20050125) | None (candidate not yet proposed) | View | |
11350 | CVE-2005-0144 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phishing attacks. | Assigned (20050125) | None (candidate not yet proposed) | View | |
11351 | CVE-2005-0145 | Candidate | Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user uses the Alt-click feature. | Assigned (20050125) | None (candidate not yet proposed) | View | |
11352 | CVE-2005-0146 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click performs a paste operation. | Assigned (20050125) | None (candidate not yet proposed) | View | |
11353 | CVE-2005-0147 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials. | Assigned (20050125) | None (candidate not yet proposed) | View |
Page 19864 of 20943, showing 5 records out of 104715 total, starting on record 99316, ending on 99320