Security Advisory
CVE-2005-0147
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials.