Description
Mozilla Firefox 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to spoof secure site indicators such as the locked icon by opening the trusted site in a popup window, then changing the location to a malicious site.
CVSS vector
AV:N/AC:H/C:N/I:P/A:NExploitability: 4.9 | Impact: 2.9Complexity: High
Confidentiality: None
Availability: None
Affected Packages5 packages
🔴Vulnerability Details
3GHSAGHSA-3gq2-8vxj-g5w7: Mozilla Firefox 1↗2022-05-03 ▶ CVEListCVE-2006-1740: Mozilla Firefox 1↗2006-04-14 ▶ OSVCVE-2006-1740: Mozilla Firefox 1↗2006-04-14 ▶ 💥Exploits & PoCs
1Exploit-DBApple Mac OSX 10.4.5 Mail.app - Real Name Buffer Overflow↗2006-03-13 ▶ 📋Vendor Advisories
4UbuntuMozilla vulnerabilities↗2006-04-28 ▶ UbuntuFirefox vulnerabilities↗2006-04-20 ▶ DebianCVE-2006-1740: firefox - Mozilla Firefox 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7....↗2006 ▶ 💬Community
5BugzillaCVE-2006-1740 security flaw↗2018-08-16 ▶ BugzillaCVE-2006-1740 Secure-site spoof (requires security warning dialog)↗2006-04-13 ▶ BugzillaCVE-2006-1740 Secure-site spoof (requires security warning dialog)↗2006-04-13 ▶ BugzillaCVE-2006-1740 Secure-site spoof (requires security warning dialog)↗2006-04-13 ▶ BugzillaCVE-2006-1740 Secure-site spoof (requires security warning dialog)↗2006-04-13 ▶