CVE-2007-1736 Information

Description

Mozilla Firefox 2.0.0.3 does not check URLs embedded in (1) object or (2) iframe HTML tags against the phishing site blacklist which allows remote attackers to bypass phishing protection.

Reference

http://securityreason.com/securityalert/2488 http://www.securityfocus.com/archive/1/464041/100/0/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/33487 firefox-url-security-bypass(33487)

Share on: