Oval Definition:oval:org.mitre.oval:def:7435
Revision Date:2014-10-06Version:29
Title:Mozilla Firefox, Thunderbird and Seamonkey Phishing Vulnerability
Description:Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 decode invisible characters when they are displayed in the location bar, which causes an incorrect address to be displayed and makes it easier for remote attackers to spoof URLs and conduct phishing attacks.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-0777
Platform(s):Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Mozilla Firefox
Mozilla Seamonkey
Mozilla Thunderbird
Definition Synopsis
  • Check Mozilla Thunderbird version
  • Mozilla Thunderbird Mainline release is installed
  • AND Thunderbird version is less than or equal to 2.0.0.20
  • OR Check Mozilla Seamonkey version
  • Mozilla Seamonkey is installed
  • AND Seamonkey version is less than or equal to 1.1.15
  • OR Check Mozilla Firefox version
  • Mozilla Firefox Mainline release is installed
  • AND Firefox version is less than or equal to 3.0.6
  • BACK