CVE
- Id
- 25327
- CVE No.
- CVE-2007-1970
- Status
- Candidate
- Description
- Mozilla Firefox does not warn the user about HTTP elements on an HTTPS page when the HTTP elements are dynamically created by a delayed document.write, which allows remote attackers to supply unauthenticated content and conduct phishing attacks.
- Phase
- Assigned (20070410)
- Votes
- None (candidate not yet proposed)
- Comments