V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2005-0238
DEB
Medium

The International Domain Name (IDN) support in Epiphany allows remote attackers to spoof domain names using punycode encoded domain names t…

CVSS
5.0
Medium
EPSS
0.02
p71
Published
2005-01-01
Updated
2005-01-01
Description

The International Domain Name (IDN) support in Epiphany allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.

Affected products
EpiphanyCaminoMozilla ≤ 1.6OmniwebOpera_browser ≤ 7.54
CVSS vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Timeline
2005-01-01
Published
2005-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Authentication
Au: N
None (N)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: P
Partial
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.016 · p71
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
epiphany-browserTracked
camino*Tracked
epiphany*Tracked
mozilla*Tracked
omniweb*Tracked
opera_browser*Tracked
Source databases
DEB
CVE