Firefox before 1.0 and Mozilla before 1.7.5 allow inactive (background) tabs to focus on input being entered in the active tab, as originally reported using form fields, which allows remote attackers to steal sensitive data that is intended for other sites, which could facilitate phishing attacks.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-01-29T05:00:00

Updated: 2024-08-08T00:46:12.488Z

Reserved: 2005-01-25T00:00:00

Link: CVE-2004-1381

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-10-20T04:00:00.000

Modified: 2017-10-11T01:29:45.777

Link: CVE-2004-1381

cve-icon Redhat

No data.