Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-08-15T00:00:00
Updated: 2024-08-07T14:53:55.770Z
Reserved: 2007-08-14T00:00:00
Link: CVE-2007-4357
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-08-15T00:17:00.000
Modified: 2024-11-21T00:35:23.887
Link: CVE-2007-4357
Redhat
No data.