← Back

CVE-2005-0147

nvd nist
Published: May 2, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials.

Affected (10)

Products: Mozilla: Firefox, Mozilla
2 products
Firefox
Mozilla
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Mozilla
Version 0.8
Version 0.9.1
Version 0.9.2
Version 0.9.3
Version 0.9
Mozilla
Version 1.7.1
Version 1.7.2
Version 1.7.3
Version 1.7
Version 1.7 rc3

Timeline

No history available yet.