← back
CVE-2009-1834

CVE-2009-1834

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 3.2%
from disclosure to weapon0 days
Published on NVDJun 12
1st PoCMay 11
exploitation probability
3.2%top 13% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.