[Full-disclosure] Firefox 2.0.0.3 Phishing Protection Bypass Vulnerability

3APA3A 3APA3A at SECURITY.NNOV.RU
Wed Apr 18 10:53:51 BST 2007


Dear carl hardwick,

 Do you know examples of phishing sites exploiting this vulnerability?

--Wednesday, April 18, 2007, 1:47:03 PM, you wrote to full-disclosure at lists.grok.org.uk:

ch> This flaw
ch> http://kaneda.bohater.net/security/20070111-firefox_2.0.0.1_bypass_phishing_protection.php
ch> remains
ch> upatched since months!!!
ch> Firefox 2.0.0.1, 2.0.0.2, 2.0.0.3 are still vulnerable!!!!!
ch> https://bugzilla.mozilla.org/show_bug.cgi?id=367538


-- 
~/ZARAZA http://securityvulns.com/





Full-Disclosure is hosted and sponsored by Secunia.