CVE-2005-0585 describes a vulnerability in Firefox versions prior to 1.0.1 and Mozilla versions prior to 1.7.6. This flaw allows malicious websites to spoof legitimate sites by truncating long sub-domains or paths in the browser display, thereby facilitating phishing attacks. The vulnerability has a CVSS score of 2.6, indicating a low severity. It is a network-based attack with high access complexity, requiring no authentication, and primarily impacts integrity (potential for phishing). There is no evidence of active exploitation, nor are there known Metasploit modules, Nuclei templates, or ExploitDB entries. Community discussion and media coverage for this CVE are minimal, suggesting a low level of public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
0.8CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:0.8:*:*:*:*:*:*:* | ||
0.9CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:0.9:*:*:*:*:*:*:* | ||
0.9CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:0.9:rc:*:*:*:*:*:* | ||
0.9.1CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:0.9.1:*:*:*:*:*:*:* | ||
0.9.2CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:0.9.2:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:N/C:N/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.