Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2486

Опубликовано: 19 нояб. 2012
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nspluginwrapper:nspluginwrapper:1.4.2:*:*:*:*:*:*:*

EPSS

Процентиль: 73%
0.008
Низкий

5 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
почти 13 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

redhat
больше 14 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

debian
почти 13 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVp ...

github
больше 3 лет назад

nspluginwrapper before 1.4.4 does not properly provide access to NPNVprivateModeBool variable settings, which could prevent Firefox plugins from determining if they should run in Private Browsing mode and allow remote attackers to bypass intended access restrictions, as demonstrated using Flash.

oracle-oval
почти 13 лет назад

ELSA-2012-1459: nspluginwrapper security and bug fix update (LOW)

EPSS

Процентиль: 73%
0.008
Низкий

5 Medium

CVSS2

Дефекты

CWE-264