Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m6fm-xwqg-f4r6

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.

EPSS

Процентиль: 94%
0.11374
Средний

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 17 лет назад

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.

redhat
почти 17 лет назад

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.

nvd
почти 17 лет назад

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 allows remote attackers to spoof the location bar via an IDN with invalid Unicode characters that are displayed as whitespace, as demonstrated by the \u115A through \u115E characters.

debian
почти 17 лет назад

Visual truncation vulnerability in netwerk/dns/src/nsIDNService.cpp in ...

oracle-oval
почти 17 лет назад

ELSA-2009-1095: firefox security update (CRITICAL)

EPSS

Процентиль: 94%
0.11374
Средний

Дефекты

CWE-20