CVE-2005-2268
Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
- Affected products
- Firefox, Mozilla Firefox, Red Hat
- Mozilla Firefox
- = 0.8, 0.9, 0.9.1, 0.9.2, 0.9.3, 0.10, 0.10.1, 1.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4
- Mozilla
- = 1.3, 1.4, 1.4.1, 1.5, 1.5.1, 1.6, 1.7, 1.7.1, 1.7.2, 1.7.3, 1.7.5, 1.7.6, 1.7.7, 1.7.8
- Fix
- Available
- CVSS 2.0
- 2.6 LOW
- EPSS
- 2.9% (85th percentile)
- NVD status
- Modified
- Published
- 2005-07-13
CVE-2005-2268 at NVD
No indexed exploits for CVE-2005-2268 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2005-2268 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.