Vulnerability Description
The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows allows remote attackers to hide the real file types of downloaded files via the Content-Type HTTP header and a filename containing whitespace, dots, or ASCII byte 160.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mozilla | Firefox | 0.10.1 |
References
- http://secunia.com/advisories/12979Vendor Advisory
- http://secunia.com/secunia_research/2004-11/advisory/Vendor Advisory
- http://www.osvdb.org/16431Vendor Advisory
- http://secunia.com/advisories/12979Vendor Advisory
- http://secunia.com/secunia_research/2004-11/advisory/Vendor Advisory
- http://www.osvdb.org/16431Vendor Advisory
FAQ
What is CVE-2005-1575?
CVE-2005-1575 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows allows remote attackers to hide the real file types of downloaded files via the Content-Type HTTP header and a filename containin...
How severe is CVE-2005-1575?
CVE-2005-1575 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1575?
Check the references section above for vendor advisories and patch information. Affected products include: Mozilla Firefox.