Firefox password store insecure
by Volker Weber
Firefox, if allowed, can store usernames and passwords. If you visit a login page again, the password is then entered automatically. Due to a lack of checking, a second, evil page on the same server could steal those saved passwords.
heise Security - Browsercheck >
Comments
Same with SeaMonkey 1.0.6 [Mozilla/5.0 (Windows; U; Windows NT 5.1; de-AT; rv:1.8.0.8) Gecko/20061030 SeaMonkey/1.0.6]
Oh wonder :)
Same with OSX Safari! At least at my current installations with the heise check.
Post a comment
Recent comments
Martin Hiegl
on It has only been less than two hours at 08:27
Stephan H. Wissel
on Notes.ini parameter RunFaster=1 is finally here at 05:24
Volker Weber
on It has only been less than two hours at 01:33
Thomas "Duffbert" Duff
on It has only been less than two hours at 01:26
Chris Linfoot
on Planet Lotus not picking up Christopher's feed at 21:56
Yancy Lent
on Planet Lotus not picking up Christopher's feed at 19:48
Bruce Elgort
on Robin Bloor: Why Google Chrome Will Dominate at 18:51
Mac Guidera
on Planet Lotus not picking up Christopher's feed at 16:04
Kevan Emmott
on 824 Chrome users so far today at 15:56
Chris Linfoot
on Planet Lotus not picking up Christopher's feed at 14:54
Lars Berntrop-Bos
on Planet Lotus not picking up Christopher's feed at 13:12
Andreas Braukmann
on 824 Chrome users so far today at 11:33
Nick Daisley
on Robin Bloor: Why Google Chrome Will Dominate at 10:14
Chris Linfoot
on Planet Lotus not picking up Christopher's feed at 09:42
Alper Iseri
on 824 Chrome users so far today at 09:38
Jean Pierre Wenzel
on 824 Chrome users so far today at 08:37
Jan-Piet Mens
on Robin Bloor: Why Google Chrome Will Dominate at 08:26
Benjamin Stein
on Synchronizing iPhone with ... Lotus Notes at 07:18
Greg Walrath
on Party like it's 2008 at 06:56
Andy Brunner
on Party like it's 2008 at 05:41
Michelle O'Rorke
on Synchronizing iPhone with ... Lotus Notes at 05:01
Arthur Fontaine
on Chrome in the wild at 03:26
Yancy Lent
on Planet Lotus not picking up Christopher's feed at 02:15
Ben Poole
on Robin Bloor: Why Google Chrome Will Dominate at 01:32
Ben Poole
on Planet Lotus not picking up Christopher's feed at 01:26



