Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-29965

Опубликовано: 24 июн. 2021
Источник: nvd
CVSS3: 5.3
CVSS2: 4.3
EPSS Низкий

Описание

A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to suggest passwords for the currently active website instead of the website that triggered the dialog. This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 89.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:android:*:*
Версия до 89.0 (исключая)

EPSS

Процентиль: 53%
0.00302
Низкий

5.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-610

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 4 лет назад

A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to suggest passwords for the currently active website instead of the website that triggered the dialog. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 89.

CVSS3: 5.3
debian
около 4 лет назад

A malicious website that causes an HTTP Authentication dialog to be sp ...

github
около 3 лет назад

A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to suggest passwords for the currently active website instead of the website that triggered the dialog. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 89.

CVSS3: 5.3
fstec
около 4 лет назад

Уязвимость браузера Firefox for Android, связанная с ошибками при обработке гипертекстовых ссылок, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 53%
0.00302
Низкий

5.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-610