Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox prior to 3.0.11 and SeaMonkey prior to 1.1.17 allows remote malicious users to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mozilla firefox 3.0.4 |
||
mozilla firefox 3.0.5 |
||
mozilla seamonkey 1.0 |
||
mozilla seamonkey 1.0.1 |
||
mozilla seamonkey 1.1.12 |
||
mozilla seamonkey 1.1.13 |
||
mozilla seamonkey 1.1 |
||
mozilla seamonkey 1.1.5 |
||
mozilla firefox 0.10.1 |
||
mozilla firefox 0.2 |
||
mozilla firefox 2.0.0.12 |
||
mozilla firefox 3.0.2 |
||
mozilla firefox 3.0.3 |
||
mozilla firefox 3.0 |
||
mozilla firefox 3.0.9 |
||
mozilla seamonkey 1.1.10 |
||
mozilla seamonkey 1.0.99 |
||
mozilla seamonkey 1.1.11 |
||
mozilla seamonkey 1.1.9 |
||
mozilla firefox 2.0.0.19 |
||
mozilla firefox 1.0.1 |
||
mozilla firefox 1.0 |
||
mozilla firefox 2.0.0.20 |
||
mozilla firefox 1.0.6 |
||
mozilla firefox 1.5 |
||
mozilla firefox 2.0_.6 |
||
mozilla firefox 2.0_.7 |
||
mozilla firefox 1.4.1 |
||
mozilla firefox 2.0.0.15 |
||
mozilla firefox 1.5.0.3 |
||
mozilla firefox 1.5.0.11 |
||
mozilla firefox 1.5.1 |
||
mozilla firefox 1.5.2 |
||
mozilla firefox 1.8 |
||
mozilla firefox 1.5.8 |
||
mozilla firefox 0.9_rc |
||
mozilla firefox 2.0.0.3 |
||
mozilla firefox 3.0.1 |
||
mozilla firefox 3.0.8 |
||
mozilla seamonkey 1.0.8 |
||
mozilla seamonkey 1.0.9 |
||
mozilla seamonkey 1.1.6 |
||
mozilla seamonkey 1.1.7 |
||
mozilla seamonkey |
||
mozilla firefox 0.5 |
||
mozilla firefox 0.6 |
||
mozilla firefox 0.9 |
||
mozilla firefox 0.9.3 |
||
mozilla firefox 1.0.2 |
||
mozilla firefox 1.0.5 |
||
mozilla firefox 2.0_.1 |
||
mozilla firefox 2.0_.10 |
||
mozilla firefox 2.0.0.21 |
||
mozilla firefox 2.0.0.10 |
||
mozilla firefox 1.5.0.4 |
||
mozilla firefox 1.5.0.1 |
||
mozilla firefox 1.5.0.10 |
||
mozilla firefox 1.5.0.6 |
||
mozilla firefox 1.5.0.7 |
||
mozilla firefox 1.5.5 |
||
mozilla firefox 2.0.0.6 |
||
mozilla firefox 2.0 |
||
mozilla firefox 0.1 |
||
mozilla firefox 0.10 |
||
mozilla firefox 0.6.1 |
||
mozilla firefox 2.0.0.14 |
||
mozilla firefox 0.9.2 |
||
mozilla firefox 1.0.4 |
||
mozilla firefox 1.0.7 |
||
mozilla firefox 2.0_.4 |
||
mozilla firefox 2.0_.5 |
||
mozilla firefox 2.0.0.17 |
||
mozilla firefox 2.0.0.11 |
||
mozilla firefox 2.0.0.16 |
||
mozilla firefox 1.5.0.5 |
||
mozilla firefox 1.5.0.2 |
||
mozilla firefox 1.5.3 |
||
mozilla firefox 1.5.4 |
||
mozilla firefox 2.0.0.5 |
||
mozilla firefox 2.0.0.4 |
||
mozilla firefox 2.0.0.8 |
||
mozilla firefox 2.0.0.13 |
||
mozilla firefox 3.0.6 |
||
mozilla firefox 3.0.7 |
||
mozilla seamonkey 1.0.3 |
||
mozilla seamonkey 1.0.4 |
||
mozilla seamonkey 1.0.6 |
||
mozilla seamonkey 1.1.1 |
||
mozilla seamonkey 1.1.15 |
||
mozilla seamonkey 1.1.3 |
||
mozilla seamonkey 1.1.8 |
||
mozilla firefox 0.3 |
||
mozilla firefox 0.4 |
||
mozilla firefox 0.8 |
||
mozilla firefox 0.9.1 |
||
mozilla firefox 1.0.3 |
||
mozilla firefox 2.0.0.9 |
||
mozilla firefox 1.0.8 |
||
mozilla firefox 2.0_.9 |
||
mozilla firefox 2.0_8 |
||
mozilla firefox 0.7 |
||
mozilla firefox 0.7.1 |
||
mozilla firefox 1.5.0.12 |
||
mozilla firefox 2.0.0.7 |
||
mozilla firefox 1.5.0.8 |
||
mozilla firefox 1.5.0.9 |
||
mozilla firefox 1.5.7 |
||
mozilla firefox 1.5.6 |
||
mozilla firefox 2.0.0.2 |
||
mozilla firefox 2.0.0.1 |
||
mozilla firefox 2.0.0.18 |
||
mozilla firefox |