A seven year-old flaw has been found in the most recent builds of the
Mozilla and Firefox web browsers.
Danish security firm Secunia has
issued an advisory rating the
flaw as "moderately critical", but no patches are available as yet.
The vulnerability could allow third parties to write information on other
people's websites, and could be exploited to create spoofed log-in pages.
"A seven year-old vulnerability has been reintroduced into Mozilla and
Firefox which can be exploited by malicious people to spoof the contents of
websites," Secunia warned.
"The vulnerability has been confirmed in Firefox 1.0.4 and Mozilla 1.7.8.
Other versions may also be affected."
The flaw makes it technically possible for phishers
to harvest details from a banking or e-commerce website, but the user would
require both the legitimate and hacked websites open simultaneously for it to
work.
Secunia has
designed
an online test to determine whether a browser is vulnerable to the flaw.
C++ Research Developer Global Pharmaceutical Company London C++ Research Developer Biotechology Global Medical Company London Global Biotechnology Company specialising in the research and development of cutting edge health care products is looking for an innovative, ... more >
Your role will be working on direct market access and exchange connectivity part of the application built in C++ on a Unix platform. The team is currently just 9 people including architect and team lead, ... more >
This is a fantastic opportunity working for a leading global software house, which is part of a larger multi media company. The role is working in the core development team in central London developing a ... more >
C++, Developer, OO, Unix/NT, API, London, City, Graduate A senior core C++/ Unix developer wanting to work in the heart of the city for one of London's most successful companies is required. The successful candidate ... more >More job opportunities