CVE-2005-2707

6 documents6 sources
Severity
5.0MEDIUM
EPSS
1.5%
top 18.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 23
Latest updateMay 3

Description

Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spawn windows without user interface components such as the address and status bar, which could be used to conduct spoofing or phishing attacks.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDmozilla/firefox1.0.6+6
NVDmozilla/mozilla_suite1.7.11+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6qfx-xcgq-wp9p: Firefox before 12022-05-03
CVEList
CVE-2005-2707: Firefox before 12005-09-23

📋Vendor Advisories

2
Ubuntu
Thunderbird vulnerabilities2005-10-11
Red Hat
security flaw2005-09-22

💬Community

1
Bugzilla
CVE-2005-2707 security flaw2018-08-16
CVE-2005-2707 (MEDIUM CVSS 5) | Firefox before 1.0.7 and Mozilla Su | cvebase.io