Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-15662

Опубликовано: 10 авг. 2020
Источник: debian

Описание

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxnot-affectedpackage

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2020-34/#CVE-2020-15662

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 6 лет назад

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

CVSS3: 6.5
nvd
около 6 лет назад

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

CVSS3: 6.5
github
больше 4 лет назад

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

CVSS3: 6.5
fstec
около 6 лет назад

Уязвимость скрипта WKUserScript функции загрузки браузера Mozilla Firefox для iOS, позволяющая нарушителю загрузить произвольный файл