Описание
Mozilla Firefox before 42.0 on Android allows user-assisted remote attackers to bypass the Same Origin Policy and trigger (1) a download or (2) cached profile-data reading via a file: URL in a saved HTML document.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Одновременно
EPSS
4.3 Medium
CVSS2
Дефекты
Связанные уязвимости
Mozilla Firefox before 42.0 on Android allows user-assisted remote attackers to bypass the Same Origin Policy and trigger (1) a download or (2) cached profile-data reading via a file: URL in a saved HTML document.
Mozilla Firefox before 42.0 on Android allows user-assisted remote att ...
Mozilla Firefox before 42.0 on Android allows user-assisted remote attackers to bypass the Same Origin Policy and trigger (1) a download or (2) cached profile-data reading via a file: URL in a saved HTML document.
Уязвимость браузера Firefox, позволяющая нарушителю обойти правила ограничения домена и нарушить конфиденциальность данных
Security update for MozillaFirefox, mozilla-nspr, mozilla-nss, xulrunner, seamonkey
EPSS
4.3 Medium
CVSS2