← Back

CVE-2013-0776

nvd nist
Published: Feb 19, 2013Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:H/Au:N/C:P/I:P/A:N
Exploitability: 4.9 / Impact: 4.9
Source: NVD

Description

Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 allow man-in-the-middle attackers to spoof the address bar by operating a proxy server that provides a 407 HTTP status code accompanied by web script, as demonstrated by a phishing attack on an HTTPS site.

Affected (22)

Show all products
4 products
Firefox
Seamonkey
Thunderbird
Thunderbird Esr
1 product
Opensuse
5 products
Enterprise Linux Aus
Enterprise Linux Desktop
Enterprise Linux Eus
Enterprise Linux Server
Enterprise Linux Workstation
1 product
Debian Linux
1 product
Ubuntu Linux
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Mozilla
Before 17.0.3
Before 19.0
Before 2.16
Before 17.0.3
Before 17.0.3
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 11.4
Version 12.1
Version 12.2
Configuration C
9 vulnerable
Vulnerable SoftwareAffected Versions
Version 5.9
Redhat
Version 5.0
Version 6.0
Redhat
Version 5.9
Version 6.3
Redhat
Version 5.0
Version 6.0
Redhat
Version 5.0
Version 6.0
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.0
Configuration E
4 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 10.04
Version 11.10
Version 12.04
Version 12.10

References (22)

Source: security@mozilla.org
Mailing ListThird Party Advisory
Source: security@mozilla.org
Mailing ListThird Party Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Vendor Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Third Party Advisory
Source: security@mozilla.org
Issue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.