CVE-2005-4809
Mozilla Firefox 1.0.1 - URL Spoofing via Nested A and TABLE Tags
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4809. PoCs published by bitlance winter.
AI-analyzed exploit summary This exploit demonstrates a URI obfuscation weakness in Mozilla Suite/Firefox and Thunderbird, where the 'Save Link As...' functionality can be manipulated to display false information in the status bar. The PoC uses nested anchor tags to deceive users into believing a download originates from a trusted source.
Description
Mozilla Firefox 1.0.1 and possibly other versions, including Mozilla and Thunderbird, allows remote attackers to spoof the URL in the Status Bar via an A HREF tag that contains a TABLE tag that contains another A tag.
Exploits (1)
This exploit demonstrates a URI obfuscation weakness in Mozilla Suite/Firefox and Thunderbird, where the 'Save Link As...' functionality can be manipulated to display false information in the status bar. The PoC uses nested anchor tags to deceive users into believing a download originates from a trusted source.