CVE

Id
12782  
CVE No.
CVE-2005-1576  
Status
Candidate  
Description
The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows uses the Content-Type HTTP header to determine the file type, but saves the original file extension when "Save to Disk" is selected, which allows remote attackers to hide the real file types of downloaded files.  
Phase
Assigned (20050514)  
Votes
None (candidate not yet proposed)  
Comments