Netscape Passcard Manager vulnerability reported

Firefox, Thunderbird, SeaMonkey, Camino, Mozilla, Netscape 6/7/8/9, and all Gecko-based browsers discussion and support forum.
(MozInfo701, Netscape Browser Archive)

Moderators: Antony, Edward, profman, Ramona

Netscape Passcard Manager vulnerability reported

Postby J-M » Tue 28 Nov, 2006 11:15 am

Netscape 8.1.2 Passcard Manager Information Disclosure vulnerability has been reported by Secunia today.
Link to the advisory is http://secunia.com/advisories/23108/

The advisory lists the following workarounds as a solution:

Solution:
Disable the "Automatically Fill Passcard" or "Automatically Log In" option in the preferences of Passcard Manager and always check the URL before invoking it.


Related Firefox thread reported by geffr is here.

Password Manager implementation is known as Passcard Manager in the newest Netscape. A new reason to release fixed 8.1.x version again.
UserAgent: Mozilla/5.0 (Windows; U; Windows NT 5.0; fi; rv:1.8.0.8) Gecko/20061025 Firefox/1.5.0.8
User avatar
J-M
diamond member
diamond member
 
Posts: 815
Joined: Sun 25 Jul, 2004 9:16 am
Location: Helsinki, Finland

Return to Firefox, SeaMonkey and Netscape

Who is online

Registered users: Google [Bot]