Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7w6w-5774-rmhv

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

EPSS

Процентиль: 50%
0.00263
Низкий

Дефекты

CWE-352

Связанные уязвимости

ubuntu
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

redhat
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

nvd
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

debian
больше 14 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox bef ...

oracle-oval
больше 14 лет назад

ELSA-2011-0310: firefox security and bug fix update (CRITICAL)

EPSS

Процентиль: 50%
0.00263
Низкий

Дефекты

CWE-352