Visual truncation vulnerability in Mozilla 1.7.12 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mozilla | Mozilla | 1.7.12 (including) | 1.7.12 (including) |
Iceape | Ubuntu | gutsy | * |
Mozilla | Ubuntu | dapper | * |
Mozilla | Ubuntu | edgy | * |