Vulnerability Name: | CVE-2005-0589 (CCN-19532) | ||||||||||||||||
Assigned: | 2005-02-24 | ||||||||||||||||
Published: | 2005-02-24 | ||||||||||||||||
Updated: | 2017-10-11 | ||||||||||||||||
Summary: | The Form Fill feature in Firefox before 1.0.1 allows remote attackers to steal potentially sensitive information via an input control that monitors the values that are generated by the autocomplete capability. | ||||||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Obtain Information | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-0589 Source: CCN Type: RHSA-2005-176 firefox security update Source: CCN Type: CIAC INFORMATION BULLETIN P-149 Firefox Security Update Source: CCN Type: GLSA-200503-10 Mozilla Firefox: Various vulnerabilities Source: GENTOO Type: Patch, Vendor Advisory GLSA-200503-10 Source: CCN Type: Mozilla Firefox Download Web page Download Firefox Source: CCN Type: MFSA 2005-19 Autocomplete data leak Source: CONFIRM Type: Vendor Advisory http://www.mozilla.org/security/announce/mfsa2005-19.html Source: REDHAT Type: UNKNOWN RHSA-2005:176 Source: BID Type: UNKNOWN 12659 Source: CCN Type: BID-12659 Mozilla Suite Multiple Remote Vulnerabilities Source: CCN Type: USN-149-3 Ubuntu 4.10 update for Firefox vulnerabilities Source: CONFIRM Type: Patch https://bugzilla.mozilla.org/show_bug.cgi?id=270697 Source: XF Type: UNKNOWN mozilla-form-information-disclosure(19532) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:100039 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10825 | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration CCN 1: ![]() | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |