Unrated severityNVD Advisory· Published Feb 7, 2007· Updated Apr 23, 2026
CVE-2007-0802
CVE-2007-0802
Description
Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing Protection mechanism by adding certain characters to the end of the domain name, as demonstrated by the "." and "/" characters, which is not caught by the Phishing List blacklist filter.
Affected products
2- cpe:2.3:a:mozilla:firefox:2.0.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:opera:opera_browser:9.10:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- kaneda.bohater.net/security/20070111-firefox_2.0.0.1_bypass_phishing_protection.phpnvdBroken LinkExploitVendor Advisory
- www.securityfocus.com/archive/1/459265/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- bugzilla.mozilla.org/show_bug.cginvdIssue TrackingThird Party Advisory
- archives.neohapsis.com/archives/fulldisclosure/2007-04/0516.htmlnvdBroken Link
- osvdb.org/33705nvdBroken Link
News mentions
0No linked articles in our index yet.