Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-12383

Опубликовано: 28 мая 2019
Источник: nvd
CVSS3: 4.3
CVSS2: 4.3
EPSS Низкий

Описание

Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:torproject:tor_browser:*:*:*:*:*:*:*:*
Версия до 8.0.1 (исключая)

EPSS

Процентиль: 72%
0.00736
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 6 лет назад

Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting.

CVSS3: 4.3
debian
больше 6 лет назад

Tor Browser before 8.0.1 has an information exposure vulnerability. It ...

CVSS3: 4.3
github
больше 3 лет назад

Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting.

EPSS

Процентиль: 72%
0.00736
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-203