Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
spoof vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-0760
EQdkp 1.3.1 and previous versions authenticates administrative requests by verifying that the HTTP Referer header specifies an admin/ URL, which allows remote malicious users to read or modify account names and passwords via a spoofed Referer.
Eqdkp Eqdkp 1.3.1
1 EDB exploit
NA
CVE-2006-1740
Mozilla Firefox 1.x prior to 1.5 and 1.0.x prior to 1.0.8, Mozilla Suite prior to 1.7.13, and SeaMonkey prior to 1.0 allows remote malicious users to spoof secure site indicators such as the locked icon by opening the trusted site in a popup window, then changing the location to ...
Mozilla Firefox 1.5
Mozilla Mozilla Suite
Mozilla Firefox 1.0.2
Mozilla Mozilla Suite 1.7.10
Mozilla Firefox 1.0.4
Mozilla Mozilla Suite 1.7.8
Mozilla Thunderbird 1.0
Mozilla Thunderbird 1.0.1
Mozilla Thunderbird 1.5
Mozilla Seamonkey 1.0
Mozilla Thunderbird 1.0.2
Mozilla Mozilla Suite 1.7.11
Mozilla Firefox 1.0
Mozilla Firefox 1.0.1
Mozilla Thunderbird 1.0.4
Mozilla Thunderbird 1.0.3
Mozilla Firefox 1.0.3
Mozilla Thunderbird 1.0.6
Mozilla Thunderbird 1.0.5
Mozilla Mozilla Suite 1.7.7
Mozilla Firefox
Mozilla Mozilla Suite 1.7.6
NA
CVE-2015-0819
The UITour::onPageEvent function in Mozilla Firefox prior to 36.0 does not ensure that an API call originates from a foreground tab, which allows remote malicious users to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site.
Mozilla Firefox 13.0.1
Mozilla Firefox 14.0.1
Mozilla Firefox 18.0
Mozilla Firefox 0.1
Mozilla Firefox 10.0.7
Mozilla Firefox 4.0
Mozilla Firefox 3.6.2
Mozilla Firefox 19.0
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 3.5.18
Mozilla Firefox 1.5
Mozilla Firefox 3.6.28
Mozilla Firefox 3.0.17
Mozilla Firefox 3.5.3
Mozilla Firefox 26.0
Mozilla Firefox 18.0.2
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 15.0.1
Mozilla Firefox 8.0
Mozilla Firefox 3.0.9
4.3
CVSSv3
CVE-2018-8383
A spoofing vulnerability exists when Microsoft Edge does not properly parse HTTP content, aka "Microsoft Edge Spoofing Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8388.
Microsoft Edge -
1 Article
NA
CVE-2008-2809
Mozilla 1.9 M8 and previous versions, Mozilla Firefox 2 prior to 2.0.0.15, SeaMonkey 1.1.5 and other versions prior to 1.1.10, Netscape 9.0, and other Mozilla-based web browsers, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, reg...
Mozilla Firefox 2.0.0.12
Mozilla Firefox 2.0.0.2
Mozilla Seamonkey 1.1.5
Netscape Navigator 9.0
Mozilla Firefox 2.0.0.7
Mozilla Firefox 2.0.0.9
Mozilla Seamonkey
Mozilla Firefox 2.0.0.14
Mozilla Firefox 2.0.0.3
Mozilla Firefox 2.0.0.6
Mozilla Firefox 2.0.0.11
Mozilla Firefox 2.0.0.4
Mozilla Firefox 2.0.0.13
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0.0.8
Mozilla Firefox 2.0.0.5
Mozilla Firefox 2.0.0.10
Mozilla Geckb
NA
CVE-2009-3985
Mozilla Firefox prior to 3.0.16 and 3.5.x prior to 3.5.6, and SeaMonkey prior to 2.0.1, allows remote malicious users to associate spoofed content with an invalid URL by setting document.location to this URL, and then writing arbitrary web script or HTML to the associated blank d...
Mozilla Seamonkey 1.1.10
Mozilla Firefox 0.1
Mozilla Seamonkey 1.0.3
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 3.5.3
Mozilla Seamonkey 1.1.8
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.1.7
Mozilla Seamonkey 1.5.0.10
Mozilla Firefox 3.0.9
Mozilla Seamonkey 1.0.6
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Seamonkey 1.0.9
Mozilla Seamonkey 1.1.3
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
5.3
CVSSv3
CVE-2023-51766
Exim prior to 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Ex...
Exim Exim
Fedoraproject Extra Packages For Enterprise Linux 8.0
Fedoraproject Extra Packages For Enterprise Linux 9.0
Fedoraproject Extra Packages For Enterprise Linux 7.0
Fedoraproject Fedora 38
Fedoraproject Fedora 39
Debian Debian Linux 10.0
1 Github repository
NA
CVE-2009-2409
The Network Security Services (NSS) library prior to 3.12.3, as used in Firefox; GnuTLS prior to 2.6.4 and 2.7.4; OpenSSL 0.9.8 up to and including 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote malicious users to spoof certificates by us...
Mozilla Firefox
Mozilla Nss
Mozilla Nss 3.0
Mozilla Nss 3.2
Mozilla Nss 3.2.1
Mozilla Nss 3.3
Mozilla Nss 3.3.1
Mozilla Nss 3.3.2
Mozilla Nss 3.4
Mozilla Nss 3.4.1
Mozilla Nss 3.4.2
Mozilla Nss 3.4.3
Mozilla Nss 3.5
Mozilla Nss 3.6
Mozilla Nss 3.6.1
Mozilla Nss 3.7
Mozilla Nss 3.7.1
Mozilla Nss 3.7.2
Mozilla Nss 3.7.3
Mozilla Nss 3.7.5
Mozilla Nss 3.7.7
Mozilla Nss 3.8
NA
CVE-2001-0339
Internet Explorer 5.5 and previous versions allows remote malicious users to display a URL in the address bar that is different than the URL that is actually being displayed, which could be used in web site spoofing attacks, aka the "Web page spoofing vulnerability."
Microsoft Internet Explorer
NA
CVE-2005-1214
Microsoft Agent allows remote malicious users to spoof trusted Internet content and execute arbitrary code by disguising security prompts on a malicious Web page.
Microsoft Windows 2003 Server 64-bit
Microsoft Windows 2000 Terminal Services
Microsoft Windows 2003 Server Web
Microsoft Windows Xp
Microsoft Windows 2003 Server Enterprise
Microsoft Windows 2003 Server Enterprise 64-bit
Microsoft Windows 2000
Microsoft Windows Me
Microsoft Windows 2003 Server Standard 64-bit
Microsoft Windows 2003 Server Datacenter 64-bit
Microsoft Windows 98se
Microsoft Windows 2003 Server Standard
Microsoft Windows 2003 Server R2
Microsoft Windows 98
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »