CVE-2004-0779

The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:firebirdsql:firebird:0.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:firefox:0.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:1.6:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-08-18 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2004-0779

Mitre link : CVE-2004-0779

CVE.ORG link : CVE-2004-0779


JSON object : View

Products Affected

firebirdsql

  • firebird

mozilla

  • firefox
  • mozilla