Back to search
CVE-2007-0802
Published: Feb 7, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing Protection mechanism by adding certain characters to the end of the domain name, as demonstrated by the "." and "/" characters, which is not caught by the Phishing List blacklist filter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20070206 Firefox 2.0.0.1 and Opera 9.10 Anty Fraud/Phishing Protection bypass.
mailing-list
x_refsource_BUGTRAQ
https://bugzilla.mozilla.org/show_bug.cgi?id=367538
x_refsource_MISC
33705
vdb-entry
x_refsource_OSVDB
20070418 Firefox 2.0.0.3 Phishing Protection Bypass Vulnerability
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now