AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-0590

MEDIUM · CVSS 5 EPSS 1.67%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-05-02 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-0590
Severity
MEDIUM
CVSS
5
EPSS
1.67%
Firefox

Original NVD Description

The installation confirmation dialog in Firefox before 1.0.1, Thunderbird before 1.0.1, and Mozilla before 1.7.6 allows remote attackers to use InstallTrigger to spoof the hostname of the host performing the installation via a long "user:pass" sequence in the URL, which appears before the real hostname.