Mozilla Browser URI Obfuscation Weakness
BID:10532
Info
Mozilla Browser URI Obfuscation Weakness
| Bugtraq ID: | 10532 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 14 2004 12:00AM |
| Updated: | Jun 14 2004 12:00AM |
| Credit: | "[email protected]" <[email protected]> originally disclosed this issue to Bugtraq. bitlance winter is credited with the discovery as well. |
| Vulnerable: |
Mozilla Firefox 0.9 rc Mozilla Firefox 0.8 Mozilla Browser 1.7 rc3 Mozilla Browser 1.6 |
| Not Vulnerable: | |
Discussion
Mozilla Browser URI Obfuscation Weakness
A weakness is reported in Mozilla that may allow an attacker to obfuscate the URI of a link. This could facilitate the impersonation of legitimate web sites in order to steal sensitive information from unsuspecting users.
It is reported that the weakness exists when form method GET action URI's that are appended with the %2F encoded character, several space characters and an appended '.' URI are followed.
Mozilla 1.6 and 1.7rc3 for Windows and Firefox 0.8 and 0.9rc for Windows are reportedly affected by this issue.
A weakness is reported in Mozilla that may allow an attacker to obfuscate the URI of a link. This could facilitate the impersonation of legitimate web sites in order to steal sensitive information from unsuspecting users.
It is reported that the weakness exists when form method GET action URI's that are appended with the %2F encoded character, several space characters and an appended '.' URI are followed.
Mozilla 1.6 and 1.7rc3 for Windows and Firefox 0.8 and 0.9rc for Windows are reportedly affected by this issue.
Exploit / POC
Mozilla Browser URI Obfuscation Weakness
No exploit is required.
The following proof of concept is available:
http://[trusted_site]%2F%20%20%20.[malicious_site]/
No exploit is required.
The following proof of concept is available:
http://[trusted_site]%2F%20%20%20.[malicious_site]/
Solution / Fix
Mozilla Browser URI Obfuscation Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.