Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-5111

Опубликовано: 11 июн. 2018
Источник: debian
EPSS Низкий

Описание

When the text of a specially formatted URL is dragged to the addressbar from page content, the displayed URL can be spoofed to show a different site than the one loaded. This allows for phishing attacks where a malicious page can spoof the identify of another site. This vulnerability affects Firefox < 58.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed58.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2018-02/#CVE-2018-5111

EPSS

Процентиль: 73%
0.00781
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

When the text of a specially formatted URL is dragged to the addressbar from page content, the displayed URL can be spoofed to show a different site than the one loaded. This allows for phishing attacks where a malicious page can spoof the identify of another site. This vulnerability affects Firefox < 58.

CVSS3: 6.5
nvd
больше 7 лет назад

When the text of a specially formatted URL is dragged to the addressbar from page content, the displayed URL can be spoofed to show a different site than the one loaded. This allows for phishing attacks where a malicious page can spoof the identify of another site. This vulnerability affects Firefox < 58.

CVSS3: 6.5
github
больше 3 лет назад

When the text of a specially formatted URL is dragged to the addressbar from page content, the displayed URL can be spoofed to show a different site than the one loaded. This allows for phishing attacks where a malicious page can spoof the identify of another site. This vulnerability affects Firefox < 58.

CVSS3: 6.5
fstec
около 9 лет назад

Уязвимость браузера Mozilla Firefox, связанная с недостаточной проверкой URI-адреса при его «перетаскивании» в адресную строку браузера из содержимого текущей страницы, позволяющая нарушителю проводить фишинг-атаки

EPSS

Процентиль: 73%
0.00781
Низкий