CVE-2004-1753
The Apple Java plugin, as used in Netscape 7.1 and 7.2, Mozilla 1.7.2, and Firefox 0.9.3 on MacOS X 10.3.5, when tabbed browsing is enabled, does not properly handle SetWindow(NULL) calls, which allows Java applets from one tab to draw to other tabs and facilitates phishing attacks that spoof tabs.
- Affected products
- Java Plug-In, Firefox, Macos X, Mozilla Firefox, Netscape
- Mozilla Firefox
- = 0.9.3
- Mozilla
- = 1.7.2
- Netscape Navigator
- = 7.1, 7.2
- Fix
- Available
- CVSS 2.0
- 2.6 LOW
- EPSS
- 1.6% (73th percentile)
- NVD status
- Modified
- Published
- 2005-02-26
CVE-2004-1753 at NVD
No indexed exploits for CVE-2004-1753 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2004-1753 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.