Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cjw6-xjvr-q9rx

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.

EPSS

Процентиль: 73%
0.0075
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 11 лет назад

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.

nvd
больше 11 лет назад

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.

debian
больше 11 лет назад

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do no ...

EPSS

Процентиль: 73%
0.0075
Низкий

Дефекты

CWE-20