Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-26955

Опубликовано: 09 дек. 2020
Источник: nvd
CVSS3: 6.5
CVSS2: 4.3
EPSS Низкий

Описание

When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. Note: This issue only affected Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 83.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:android:*:*
Версия до 83.0 (исключая)

EPSS

Процентиль: 51%
0.00284
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-565

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 4 лет назад

When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.

CVSS3: 6.5
debian
больше 4 лет назад

When a user downloaded a file in Firefox for Android, if a cookie is s ...

github
около 3 лет назад

When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.

EPSS

Процентиль: 51%
0.00284
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-565