Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rp4p-cp68-c8c4

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IFRAME element referencing a different web site that is intended to read this data.

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IFRAME element referencing a different web site that is intended to read this data.

EPSS

Процентиль: 31%
0.00118
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 10 лет назад

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IFRAME element referencing a different web site that is intended to read this data.

redhat
больше 10 лет назад

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IFRAME element referencing a different web site that is intended to read this data.

nvd
больше 10 лет назад

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IFRAME element referencing a different web site that is intended to read this data.

debian
больше 10 лет назад

The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote ...

EPSS

Процентиль: 31%
0.00118
Низкий

Дефекты

CWE-200