Описание
Mozilla Firefox before 28.0.1 on Android processes a file: URL by copying a local file onto the SD card, which allows attackers to obtain sensitive information from the Firefox profile directory via a crafted application.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 28.0 (включая)
Одновременно
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00068
Низкий
1.9 Low
CVSS2
Дефекты
CWE-200
Связанные уязвимости
debian
почти 12 лет назад
Mozilla Firefox before 28.0.1 on Android processes a file: URL by copy ...
github
больше 3 лет назад
Mozilla Firefox before 28.0.1 on Android processes a file: URL by copying a local file onto the SD card, which allows attackers to obtain sensitive information from the Firefox profile directory via a crafted application.
EPSS
Процентиль: 21%
0.00068
Низкий
1.9 Low
CVSS2
Дефекты
CWE-200