vendor:
Firefox
by:
Jordi Chancel
7.5
CVSS
HIGH
Location Bar Spoofing
20
CWE
Product Name: Firefox
Affected Version From: Mozilla Firefox 3.0.15
Affected Version To: Mozilla Firefox 3.5.5
Patch Exists: YES
Related CWE: CVE-2009-3985
CPE: mozilla:firefox
Metasploit:
https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2009-3985/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2009-1674/, https://www.rapid7.com/db/vulnerabilities/mozilla-seamonkey-cve-2009-3985/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2009-3985/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2009-3985/, https://www.rapid7.com/db/vulnerabilities/mfsa2009-69-cve-2009-3985/
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=43171, https://www.infosecmatter.com/nessus-plugin-library/?id=43397, https://www.infosecmatter.com/nessus-plugin-library/?id=49898, https://www.infosecmatter.com/nessus-plugin-library/?id=43388, https://www.infosecmatter.com/nessus-plugin-library/?id=43336, https://www.infosecmatter.com/nessus-plugin-library/?id=43619, https://www.infosecmatter.com/nessus-plugin-library/?id=43356, https://www.infosecmatter.com/nessus-plugin-library/?id=67975, https://www.infosecmatter.com/nessus-plugin-library/?id=43339, https://www.infosecmatter.com/nessus-plugin-library/?id=43383
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP-VISTA-SEVEN & LINUX BACKTRACK
2009
MOZILLA FIREFOX LOCATION BAR SPOOFING VULNERABILITY
Security researcher Jordi Chancel reported an issue similar to one fixed in mfsa2009-44 in which a web page can set document.location to a URL that can't be displayed properly and then inject content into the resulting blank page. An attacker could use this vulnerability to place a legitimate-looking but invalid URL in the location bar and inject HTML and JavaScript into the body of the page, resulting in a spoofing attack.
Mitigation:
Users should upgrade to the latest version of Firefox to mitigate this vulnerability.