← Back

CVE-2004-0779

nvd nist
Published: Aug 18, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site.

Affected (3)

1 product
Firebird
2 products
Firefox
Mozilla
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 0.7
Version 0.8
Version 1.6

Timeline

No history available yet.