[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <001601c84dcf$92085dd0$b6191970$@com>
Date: Thu, 3 Jan 2008 08:12:06 +0200
From: "avivra" <avivra@...il.com>
To: <bugtraq@...urityfocus.com>,
<full-disclosure@...ts.grok.org.uk>
Subject: Yet another Dialog Spoofing Vulnerability -
Firefox Basic Authentication
Summary
Mozilla Firefox allows spoofing the information presented in the basic
authentication dialog box. This can allow an attacker to conduct phishing
attacks, by tricking the user to believe that the authentication dialog box
is from a trusted website.
Affected versions
Mozilla Firefox v2.0.0.11.
Prior versions and other Mozilla products may also be affected.
http://aviv.raffon.net/2008/01/02/YetAnotherDialogSpoofingFirefoxBasicAuthen
tication.aspx
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists