CVE-2009-2654
Last modified
CVE-2009-2654 is a vulnerability of currently unknown severity. Mozilla Firefox before 3.0.13, and 3.5.x before 3.5.2, allows remote attackers to spoof the address bar, and possibly conduct phishing attacks, via a crafted web page that calls window.open with an invalid character in the URL, makes document.write calls to the resulting object, and then calls the stop method during the loading of the error page.. EPSS estimates a 4.75% chance of exploitation in the next 30 days.
Description
Mozilla Firefox before 3.0.13, and 3.5.x before 3.5.2, allows remote attackers to spoof the address bar, and possibly conduct phishing attacks, via a crafted web page that calls window.open with an invalid character in the URL, makes document.write calls to the resulting object, and then calls the stop method during the loading of the error page.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Mozilla | Firefox | <= 3.5.1 | — |
| Mozilla | Firefox | 0.1 | — |
| Mozilla | Firefox | 0.2 | — |
| Mozilla | Firefox | 0.3 | — |
| Mozilla | Firefox | 0.4 | — |
| Mozilla | Firefox | 0.5 | — |
| Mozilla | Firefox | 0.6 | — |
| Mozilla | Firefox | 0.6.1 | — |
| Mozilla | Firefox | 0.7 | — |
| Mozilla | Firefox | 0.7.1 | — |
| Mozilla | Firefox | 0.8 | — |
| Mozilla | Firefox | 0.9 | — |
| Mozilla | Firefox | 0.9.1 | — |
| Mozilla | Firefox | 0.9.2 | — |
| Mozilla | Firefox | 0.9.3 | — |
| Mozilla | Firefox | 0.9_rc | — |
| Mozilla | Firefox | 0.10 | — |
| Mozilla | Firefox | 0.10.1 | — |
| Mozilla | Firefox | 1.0 | — |
| Mozilla | Firefox | 1.0.1 | — |
| Mozilla | Firefox | 1.0.2 | — |
| Mozilla | Firefox | 1.0.3 | — |
| Mozilla | Firefox | 1.0.4 | — |
| Mozilla | Firefox | 1.0.5 | — |
| Mozilla | Firefox | 1.0.6 | — |
| Mozilla | Firefox | 1.0.7 | — |
| Mozilla | Firefox | 1.0.8 | — |
| Mozilla | Firefox | 1.4.1 | — |
| Mozilla | Firefox | 1.5 | — |
| Mozilla | Firefox | 1.5.0.1 | — |
| Mozilla | Firefox | 1.5.0.2 | — |
| Mozilla | Firefox | 1.5.0.3 | — |
| Mozilla | Firefox | 1.5.0.4 | — |
| Mozilla | Firefox | 1.5.0.5 | — |
| Mozilla | Firefox | 1.5.0.6 | — |
| Mozilla | Firefox | 1.5.0.7 | — |
| Mozilla | Firefox | 1.5.0.8 | — |
| Mozilla | Firefox | 1.5.0.9 | — |
| Mozilla | Firefox | 1.5.0.10 | — |
| Mozilla | Firefox | 1.5.0.11 | — |
| Mozilla | Firefox | 1.5.0.12 | — |
| Mozilla | Firefox | 1.5.1 | — |
| Mozilla | Firefox | 1.5.2 | — |
| Mozilla | Firefox | 1.5.3 | — |
| Mozilla | Firefox | 1.5.4 | — |
| Mozilla | Firefox | 1.5.5 | — |
| Mozilla | Firefox | 1.5.6 | — |
| Mozilla | Firefox | 1.5.7 | — |
| Mozilla | Firefox | 1.5.8 | — |
| Mozilla | Firefox | 1.8 | — |
Showing 50 of 96 affected configurations. See NVD for the full list.
References
- http://blog.mozilla.com/security/2009/07/28/url-bar-spoofing-vulnerability/Patch, Vendor Advisory
- http://secunia.com/advisories/36001Vendor Advisory
- http://secunia.com/advisories/36126Vendor Advisory
- http://secunia.com/advisories/36141Vendor Advisory
- http://secunia.com/advisories/36435Vendor Advisory
- http://www.mozilla.org/security/announce/2009/mfsa2009-44.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/35803Exploit, Patch
- http://www.vupen.com/english/advisories/2009/2006Patch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/2142Patch, Vendor Advisory
- http://blog.mozilla.com/security/2009/07/28/url-bar-spoofing-vulnerability/Patch, Vendor Advisory
- http://secunia.com/advisories/36001Vendor Advisory
- http://secunia.com/advisories/36126Vendor Advisory
- http://secunia.com/advisories/36141Vendor Advisory
- http://secunia.com/advisories/36435Vendor Advisory
- http://www.mozilla.org/security/announce/2009/mfsa2009-44.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/35803Exploit, Patch
- http://www.vupen.com/english/advisories/2009/2006Patch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/2142Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-2654?
How severe is CVE-2009-2654?
How do I fix CVE-2009-2654?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-2648FlashDen Guestbook allows remote attackers to obtain configu…
- CVE-2009-2649The IATA (ata) driver in FreeBSD 6.0 and 8.0, when read acce…
- CVE-2009-2650Heap-based buffer overflow in Sorcerer Software MultiMedia J…
- CVE-2009-2651main/rtp.c in Asterisk Open Source 1.6.1 before 1.6.1.2 allo…
- CVE-2009-2652Unspecified vulnerability in Solaris Trusted Extensions in S…
- CVE-2009-2653The NtUserConsoleControl function in win32k.sys in Microsoft…
- CVE-2009-2655mshtml.dll in Microsoft Internet Explorer 7 and 8 on Windows…
- CVE-2009-2656Unspecified vulnerability in the com.android.phone process i…
- CVE-2009-2657nilfs-utils before 2.0.14 installs multiple programs with un…
- CVE-2009-2658Directory traversal vulnerability in ZNC before 0.072 allows…
- CVE-2009-2659The Admin media handler in core/servers/basehttp.py in Djang…
- CVE-2009-2660Multiple integer overflows in CamlImages 2.2 might allow con…
Are you affected by CVE-2009-2654?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
