5
CVSSv2

CVE-2004-1380

Published: 20/10/2004 Updated: 11/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Firefox prior to 1.0 and Mozilla prior to 1.7.5 allows inactive (background) tabs to launch dialog boxes, which can allow remote malicious users to spoof the dialog boxes from web sites in other windows and facilitate phishing attacks, aka the "Dialog Box Spoofing Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 0.10

mozilla firefox 0.9

mozilla mozilla

mozilla mozilla 1.5

mozilla mozilla 1.7.3

mozilla mozilla 1.7

mozilla firefox 0.9.1

mozilla mozilla 1.4.1

mozilla mozilla 1.4

mozilla mozilla 1.6

mozilla firefox 0.10.1

mozilla firefox 0.8

mozilla mozilla 1.3

mozilla firefox 0.9.2

mozilla firefox 0.9.3

mozilla mozilla 1.5.1

mozilla mozilla 1.7.1

mozilla mozilla 1.7.2

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Critical Topic Updated mozilla packages that fix various bugs are now availableThis update has been rated as having critical security impact by the RedHat Security Response Team Description Mozilla is an open source Web bro ...
Synopsis mozilla security update Type/Severity Security Advisory: Critical Topic Updated mozilla packages that fix various bugs are now availableThis update has been rated as having critical security impact by the RedHat Security Response Team Description Mozilla is an open source Web bro ...

Exploits

<b>Test Your Browser</b><br> <br> Open the link below in a new tab, then try to type data into form fields on the CitiBank website<br> <br> <a href="wwwcitibankcom/" onMouseOver="setInterval('documentmyformuserinputfocus();', 10);">Open this Link in New Tab</a> ...