Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fvm8-v4j9-jgp3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

EPSS

Процентиль: 73%
0.008
Низкий

Связанные уязвимости

ubuntu
почти 13 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

redhat
больше 14 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

nvd
почти 13 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

debian
почти 13 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVp ...

oracle-oval
почти 13 лет назад

ELSA-2012-1459: nspluginwrapper security and bug fix update (LOW)

EPSS

Процентиль: 73%
0.008
Низкий