Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-6210

Опубликовано: 21 нояб. 2023
Источник: debian
EPSS Низкий

Описание

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed120.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2023-49/#CVE-2023-6210

EPSS

Процентиль: 35%
0.0014
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

CVSS3: 6.5
nvd
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

CVSS3: 6.5
github
около 2 лет назад

When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable content such as iframes from insecure http: URLs This vulnerability affects Firefox < 120.

CVSS3: 6.5
fstec
около 2 лет назад

Уязвимость браузера Mozilla Firefox, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю проводить фишинг-атаки

EPSS

Процентиль: 35%
0.0014
Низкий