First published: Mon Jun 11 2007(Updated: )
Visual truncation vulnerability in Galeon 2.0.1 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic Authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Galeon Browser | =2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3145 is classified as a medium severity vulnerability due to its potential for phishing attacks.
To mitigate CVE-2007-3145, it is recommended to upgrade Galeon browser to a more recent version that addresses this vulnerability.
CVE-2007-3145 can facilitate spoofing attacks, potentially allowing attackers to perform phishing by disguising malicious URLs.
CVE-2007-3145 specifically affects Galeon browser version 2.0.1.
Yes, CVE-2007-3145 can be exploited remotely by attackers to spoof the address bar.