CVE-2005-4685
Published Dec 31, 2005
Last updated 7 years ago
Overview
- Description
- Firefox and Mozilla can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its search list, which allows remote attackers to trick a user into accepting a cookie for a hostname formed via search-list expansion of the hostname entered by the user, or steal a cookie for an expanded hostname, as demonstrated by an attacker who operates an ap1.com Internet web site to steal cookies associated with an ap1.com.example.com intranet web site.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.4
- Impact score
- 4.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mozilla:firefox:0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93C142C5-3A85-432B-80D6-2E7B1B4694F4" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2434FCE7-A50B-4527-9970-C7224B31141C" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.9:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5633FB6E-D623-49D4-9858-4E20E64DE458" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "429ECA02-DBCD-45FB-942C-CA4BC1BC8A72" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5F0DC80-5473-465C-9D7F-9589F1B78E12" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "567FF916-7DE0-403C-8528-7931A43E0D18" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "010B34F4-910E-4515-990B-8E72DF009578" }, { "criteria": "cpe:2.3:a:mozilla:firefox:0.10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8FAA1A89-E8D9-46D0-8E2C-9259920ACBFE" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5A545A77-2198-4685-A87F-E0F2DAECECF6" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "778FAE0C-A5CF-4B67-93A9-1A803E3E699F" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7447185-7509-449D-8907-F30A42CF7EB5" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EDBAC37-9D08-44D1-B279-BC6ACF126CAF" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FFF89FA-2020-43CC-BACD-D66117B3DD26" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "834BB391-5EB5-43A8-980A-D305EDAE6FA7" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A38AD88-BAA6-4FBE-885B-69E951BD1EFE" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B500EE6C-99DB-49A3-A1F1-AFFD7FE28068" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.5:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E19ED1CA-DEBD-4786-BA7B-C122C7D2E5B7" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.5:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66BE50FE-EA21-4633-A181-CD35196DF06E" }, { "criteria": "cpe:2.3:a:mozilla:firefox:preview_release:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFDBA992-46F8-42A6-9428-C9E475CA69E3" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA58BA23-4CFE-40F8-A2F4-104007E12E05" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "22F00276-9071-4B96-B49C-2E0898476874" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB84CC9B-346B-4AF4-929E-D56D85960103" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9420CD82-0E5F-4486-9AF8-9DCD6ED7E037" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0A9C79AB-4ABE-49E6-BAB2-94610AE0316F" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "04DE7CCB-79B8-4F9B-AC14-E4A100F9E473" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1444C77E-FF98-40E5-9CA9-B4C71B3C9304" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3B40771F-30CB-45D0-9EDE-1F13852085B1" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E4F64F8-CCC2-47FF-9B9D-41B3BCDD513C" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47315EC4-1EED-4070-A087-8E37C8FE6703" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F1EB38F-CEB2-40BC-AA5D-CC539F597137" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.35:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE6B0681-B96F-405C-8042-1BF2DDB41648" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:0.9.48:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5436BBD2-E3FF-4558-B8F5-FFF5CA9FC045" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CCDAEAE6-BA9F-4D40-B264-4A72930239E1" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9296197-0EE0-4CC0-A11F-E44E3443E990" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A76ACC55-754D-4501-8312-5A4E10D053B8" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8987151-0901-4547-B750-5DC470BB9CF7" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53E60BCC-6D1C-489E-9F3B-9BE42B46704F" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66A87ED8-9E1F-4C2C-B806-A41765081C9C" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.1:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C795D86F-9B08-41FE-B82B-5BBB3DE6357D" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.1:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2637D552-4A3D-4867-B52A-ACCED8681AF4" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CC237C8-CFE0-4128-B549-93CD16894E71" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.2:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6B8EA79A-8426-44CF-AF13-58F7EF8B6D88" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.2:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "367A5D46-0FF3-4140-9478-251363822E9C" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAA58EE9-05C7-4395-A8A4-5F54BE4C5DAD" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C656A621-BE62-4BB8-9B25-A3916E60FA12" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8DE4889-424F-4A44-8C14-9F18821CE961" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D3F91A1-7DD9-4146-8BA4-BE594C66DD30" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82A6419D-0E94-4D80-8B07-E5AB4DBA2F28" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1003D688-3EEA-45F9-BB2C-5BAB395D7678" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED69BEB9-8D83-415B-826D-9D17FB67976B" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9AE678D7-812D-4C55-91B0-F3AC6BE0CD58" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.4.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "098458D4-635B-4A4D-9472-39370094E1ED" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCDB64E5-AE26-43DF-8A66-654D5D22A635" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED9D75F1-8333-43DE-A08B-142E4C5899D4" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BF63077-4E98-497D-8CE6-B84B022DB21D" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FCEAEDEB-0EE7-4221-B9B8-65438580D331" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78A75EE3-DC19-4F21-86F4-834FCEAFEFA2" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F610FFD5-DF37-4075-AE8B-8D89DF6205A8" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D093FD25-94C8-49B8-A452-438023BFB105" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3346E7D0-D7EF-4182-BD86-837F14EEB9FA" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "150F1B28-0FAB-4880-B1D5-7F244A1C4D31" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2FE7EA3B-3BF8-4696-9488-78506074D62D" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CCFD7AF7-0FE9-4F56-98B0-60FC7F7F1B78" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C883B45F-D28D-428E-AAF7-F93522A229DC" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78647043-8EBD-48AA-98F4-8E6D332C35E6" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EFA659B9-2A00-45A6-A462-4E0A20FB7F81" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFC06EBA-A836-4817-AEF6-EAC4BEDDF3CB" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D48957B0-BD47-4186-ACD7-0B9E7DB39B38" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E748A943-8A1E-4657-826C-EBE013E04864" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B628660A-00D7-4B56-8C86-4E33FB98B202" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "655FA37C-DA33-4195-AEAF-5A5D40C5C245" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EDD5B652-8474-4C00-9CDD-62B499045932" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.7.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2BD8D89-4936-402C-973D-5F4B071806D5" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.8:alpha1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "366CC212-B8B1-4702-8C10-205184F49DF0" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.8:alpha2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10349BA5-70D3-4D11-94F6-A77D8570CB06" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.8:alpha3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A68DFC43-518D-4629-8954-C5764D4BD070" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:1.8:alpha4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03C940C2-F7C5-4791-92C4-A7DF6B965381" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:m15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C85C3F06-8FFF-4A6F-BB86-B66A6031647E" }, { "criteria": "cpe:2.3:a:mozilla:mozilla:m16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FE87E2A0-4F55-4265-8E3C-0E5D60538BDC" } ], "operator": "OR" } ] } ]