Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x428-6vv2-wx8p

Опубликовано: 19 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

EPSS

Процентиль: 55%
0.00325
Низкий

10 Critical

CVSS3

Связанные уязвимости

CVSS3: 10
ubuntu
около 2 лет назад

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

CVSS3: 8
redhat
около 2 лет назад

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

CVSS3: 10
nvd
около 2 лет назад

A compromised child process could have injected XBL Bindings into privileged CSS rules, resulting in arbitrary code execution and a sandbox escape. This vulnerability affects Firefox < 70.

CVSS3: 10
debian
около 2 лет назад

A compromised child process could have injected XBL Bindings into priv ...

CVSS3: 10
fstec
больше 6 лет назад

Уязвимость веб-браузера Firefox, связанная с недостаточной нейтрализацией специальных элементов в запросе, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 55%
0.00325
Низкий

10 Critical

CVSS3