mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
93 lines
3.1 KiB
JSON
93 lines
3.1 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "cve@mitre.org",
|
|
"ID" : "CVE-2008-0367",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "n/a",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "Mozilla Firefox 2.0.0.11, 3.0b2, and possibly earlier versions, when prompting for HTTP Basic Authentication, displays the site requesting the authentication after the Realm text, which might make it easier for remote HTTP servers to conduct phishing and spoofing attacks."
|
|
}
|
|
]
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"name" : "20080103 Re: [Full-disclosure] Yet another Dialog Spoofing Vulnerability - Firefox Basic Authentication",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://www.securityfocus.com/archive/1/485738/100/200/threaded"
|
|
},
|
|
{
|
|
"name" : "20080103 Yet another Dialog Spoofing Vulnerability - Firefox Basic Authentication",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://www.securityfocus.com/archive/1/485732/100/200/threaded"
|
|
},
|
|
{
|
|
"name" : "http://aviv.raffon.net/2008/01/02/YetAnotherDialogSpoofingFirefoxBasicAuthentication.aspx",
|
|
"refsource" : "MISC",
|
|
"url" : "http://aviv.raffon.net/2008/01/02/YetAnotherDialogSpoofingFirefoxBasicAuthentication.aspx"
|
|
},
|
|
{
|
|
"name" : "http://aviv.raffon.net/2008/01/05/FirefoxDialogSpoofingFAQ.aspx",
|
|
"refsource" : "MISC",
|
|
"url" : "http://aviv.raffon.net/2008/01/05/FirefoxDialogSpoofingFAQ.aspx"
|
|
},
|
|
{
|
|
"name" : "http://blog.mozilla.com/security/2008/01/04/basicauth-dialog-realm-value-spoofing/",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://blog.mozilla.com/security/2008/01/04/basicauth-dialog-realm-value-spoofing/"
|
|
},
|
|
{
|
|
"name" : "https://bugzilla.mozilla.org/show_bug.cgi?id=244273",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "https://bugzilla.mozilla.org/show_bug.cgi?id=244273"
|
|
},
|
|
{
|
|
"name" : "27111",
|
|
"refsource" : "BID",
|
|
"url" : "http://www.securityfocus.com/bid/27111"
|
|
}
|
|
]
|
|
}
|
|
}
|