CVE

Id
25327  
CVE No.
CVE-2007-1970  
Status
Candidate  
Description
Mozilla Firefox does not warn the user about HTTP elements on an HTTPS page when the HTTP elements are dynamically created by a delayed document.write, which allows remote attackers to supply unauthenticated content and conduct phishing attacks.  
Phase
Assigned (20070410)  
Votes
None (candidate not yet proposed)  
Comments