Computer Security
[EN] securityvulns.ru
no-pyccku



Mozilla multiple addons upgrade weakness
Published:30.05.2007
Source:FULL-DISCLOSURE
SecurityVulns ID:7759
Type:m-i-t-m
Level:5/10
Description:Upgrade mechanism of multiple addons allows upgrade via unsecure HTTP connection without using of SSL/TLS certificates, makeing active man-in-the-middle attacks possible.
Original documentdocumentChristopher Soghoian, [Full-disclosure] New Vulnerability against Firefox/ Major Extensions (30.05.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru