CVE-2005-2602: Low severity Mozilla Thunderbird vulnerability
Published Aug 17, 2005
·Updated
Mozilla Thunderbird 1.0 and Firefox 1.0.6 allows remote attackers to obfuscate URIs via a long URI, which causes the address bar to go blank and could facilitate phishing attacks.
Affected Software
2 affected components
Mozilla Thunderbird=1.0
Mozilla Firefox=1.0.6
Event History
Aug 17, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2602?
CVE-2005-2602 is considered a moderate severity vulnerability that could facilitate phishing attacks.
2
How do I fix CVE-2005-2602?
To mitigate CVE-2005-2602, upgrade to a later version of Mozilla Thunderbird or Firefox that addresses this vulnerability.
3
What impact does CVE-2005-2602 have on users?
CVE-2005-2602 impacts users by allowing remote attackers to obfuscate URIs, leading to potential phishing scenarios.
4
Which versions of software are affected by CVE-2005-2602?
CVE-2005-2602 affects Mozilla Thunderbird version 1.0 and Firefox version 1.0.6.
5
Is there a workaround for CVE-2005-2602?
Currently, the best workaround for CVE-2005-2602 is to avoid using the affected software versions.