Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-0810

Опубликовано: 01 апр. 2015
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Mozilla Firefox before 37.0 on OS X does not ensure that the cursor is visible, which allows remote attackers to conduct clickjacking attacks via a Flash object in conjunction with DIV elements associated with layered presentation, and crafted JavaScript code that interacts with an IMG element.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
Версия до 36.0.4 (включая)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*

EPSS

Процентиль: 60%
0.00396
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 11 лет назад

Mozilla Firefox before 37.0 on OS X does not ensure that the cursor is visible, which allows remote attackers to conduct clickjacking attacks via a Flash object in conjunction with DIV elements associated with layered presentation, and crafted JavaScript code that interacts with an IMG element.

debian
почти 11 лет назад

Mozilla Firefox before 37.0 on OS X does not ensure that the cursor is ...

github
больше 3 лет назад

Mozilla Firefox before 37.0 on OS X does not ensure that the cursor is visible, which allows remote attackers to conduct clickjacking attacks via a Flash object in conjunction with DIV elements associated with layered presentation, and crafted JavaScript code that interacts with an IMG element.

EPSS

Процентиль: 60%
0.00396
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-20