Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r39w-v7w4-p94f

Опубликовано: 05 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.

EPSS

Процентиль: 17%
0.00253
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 3 лет назад

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.

CVSS3: 7.8
nvd
около 3 лет назад

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.

msrc
12 месяцев назад

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.

CVSS3: 7.8
debian
около 3 лет назад

Insufficient validation in the Drag and Drop API in conjunction with s ...

CVSS3: 8.8
fstec
около 3 лет назад

Уязвимость реализации прикладного программного интерфейса Drag and Drop браузера Firefox, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 17%
0.00253
Низкий

7.8 High

CVSS3