First published: Wed Dec 31 2003(Updated: )
Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an HTTP request for a domain with an extra . (dot) at the end.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | ||
Netscape Navigator | =7.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-1492 is considered a medium severity vulnerability due to its potential for cookie information leakage.
To mitigate CVE-2003-1492, users should upgrade to a newer, patched version of Netscape Navigator or Mozilla.
CVE-2003-1492 is associated with cross-domain attacks allowing unauthorized access to cookie information.
CVE-2003-1492 specifically affects Netscape Navigator 7.0.2 and certain versions of Mozilla.
While CVE-2003-1492 is an old vulnerability, it highlights historical issues with cookie security that are still pertinent in web security discussions.