The Apple Java plugin, as used in Netscape 7.1 and 7.2, Mozilla 1.7.2, and Firefox 0.9.3 on MacOS X 10.3.5, when tabbed browsing is enabled, does not properly handle SetWindow(NULL) calls, which allows Java applets from one tab to draw to other tabs and facilitates phishing attacks that spoof tabs.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-02-26T05:00:00
Updated: 2017-07-10T14:57:01
Reserved: 2005-02-26T00:00:00
Link: CVE-2004-1753
JSON object: View
NVD Information
Status : Modified
Published: 2004-12-31T05:00:00.000
Modified: 2017-07-11T01:31:19.513
Link: CVE-2004-1753
JSON object: View
Redhat Information
No data.
CWE