Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7835

Опубликовано: 11 июн. 2018
Источник: debian
EPSS Низкий

Описание

Mixed content blocking of insecure (HTTP) sub-resources in a secure (HTTPS) document was not correctly applied for resources that redirect from HTTPS to HTTP, allowing content that should be blocked, such as scripts, to be loaded on a page. This vulnerability affects Firefox < 57.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed57.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2017-24/#CVE-2017-7835

EPSS

Процентиль: 71%
0.00662
Низкий

Связанные уязвимости

CVSS3: 7.3
ubuntu
больше 7 лет назад

Mixed content blocking of insecure (HTTP) sub-resources in a secure (HTTPS) document was not correctly applied for resources that redirect from HTTPS to HTTP, allowing content that should be blocked, such as scripts, to be loaded on a page. This vulnerability affects Firefox < 57.

CVSS3: 7.3
nvd
больше 7 лет назад

Mixed content blocking of insecure (HTTP) sub-resources in a secure (HTTPS) document was not correctly applied for resources that redirect from HTTPS to HTTP, allowing content that should be blocked, such as scripts, to be loaded on a page. This vulnerability affects Firefox < 57.

CVSS3: 7.3
github
больше 3 лет назад

Mixed content blocking of insecure (HTTP) sub-resources in a secure (HTTPS) document was not correctly applied for resources that redirect from HTTPS to HTTP, allowing content that should be blocked, such as scripts, to be loaded on a page. This vulnerability affects Firefox < 57.

CVSS3: 7.3
fstec
больше 8 лет назад

Уязвимость браузера Mozilla Firefox, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю проводить межсайтовые сценарные атаки

EPSS

Процентиль: 71%
0.00662
Низкий