Files
CVEs-PoC/2008/CVE-2008-5508.md
T
2024-06-18 02:51:15 +02:00

18 lines
756 B
Markdown

### [CVE-2008-5508](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5508)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20n%2Fa%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 does not properly parse URLs with leading whitespace or control characters, which might allow remote attackers to misrepresent URLs and simplify phishing attacks.
### POC
#### Reference
- http://www.ubuntu.com/usn/usn-690-2
#### Github
No PoCs found on GitHub currently.