CVE-2003-1492: Medium severity Mozilla Firefox vulnerability
Published Dec 31, 2003
·Updated
Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an HTTP request for a domain with an extra . (dot) at the end.
Affected Software
2 affected components
Mozilla Firefox
Netscape Navigator=7.0.2
Event History
Dec 31, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 25, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1492?
CVE-2003-1492 is considered a medium severity vulnerability due to its potential for cookie information leakage.
2
How do I fix CVE-2003-1492?
To mitigate CVE-2003-1492, users should upgrade to a newer, patched version of Netscape Navigator or Mozilla.
3
What type of attack is associated with CVE-2003-1492?
CVE-2003-1492 is associated with cross-domain attacks allowing unauthorized access to cookie information.
4
Which versions of software are affected by CVE-2003-1492?
CVE-2003-1492 specifically affects Netscape Navigator 7.0.2 and certain versions of Mozilla.
5
Is CVE-2003-1492 still a relevant vulnerability today?
While CVE-2003-1492 is an old vulnerability, it highlights historical issues with cookie security that are still pertinent in web security discussions.