Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxvj-wr6f-vvf9

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

K-Meleon 1.5.3 allows context-dependent attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary file: URL after a victim has visited any file: URL, as demonstrated by a visit to a file: document written by the attacker.

K-Meleon 1.5.3 allows context-dependent attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary file: URL after a victim has visited any file: URL, as demonstrated by a visit to a file: document written by the attacker.

EPSS

Процентиль: 48%
0.0025
Низкий

Связанные уязвимости

nvd
больше 16 лет назад

K-Meleon 1.5.3 allows context-dependent attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary file: URL after a victim has visited any file: URL, as demonstrated by a visit to a file: document written by the attacker.

EPSS

Процентиль: 48%
0.0025
Низкий