Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vhp9-5mw9-c7wp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

EPSS

Процентиль: 41%
0.00186
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 5 лет назад

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

CVSS3: 6.5
nvd
почти 5 лет назад

A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS < 28.

CVSS3: 6.5
debian
почти 5 лет назад

A rogue webpage could override the injected WKUserScript used by the d ...

CVSS3: 6.5
fstec
почти 5 лет назад

Уязвимость скрипта WKUserScript функции загрузки браузера Mozilla Firefox для iOS, позволяющая нарушителю загрузить произвольный файл

EPSS

Процентиль: 41%
0.00186
Низкий