CVE-2003-1492

Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an HTTP request for a domain with an extra . (dot) at the end.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:7.0.2:*:*:*:*:*:*:*

History

20 Nov 2024, 23:47

Type Values Removed Values Added
References () http://www.securityfocus.com/archive/1/319919 - Exploit () http://www.securityfocus.com/archive/1/319919 - Exploit
References () http://www.securityfocus.com/bid/7456 - Exploit () http://www.securityfocus.com/bid/7456 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/11924 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/11924 -

Information

Published : 2003-12-31 05:00

Updated : 2024-11-20 23:47


NVD link : CVE-2003-1492

Mitre link : CVE-2003-1492

CVE.ORG link : CVE-2003-1492


JSON object : View

Products Affected

netscape

  • navigator

mozilla

  • firefox
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')