Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-33594

Опубликовано: 11 авг. 2021
Источник: nvd
CVSS3: 3.5
CVSS2: 3.5
EPSS Низкий

Описание

An address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted a malicious URL, it appears like a legitimate one on the address bar, while the content comes from other domain and presented in a window, covering the original content. A remote attacker can leverage this to perform address bar spoofing attack.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:f-secure:safe:*:*:*:*:*:android:*:*
Версия до 18.4.0 (исключая)

EPSS

Процентиль: 53%
0.00303
Низкий

3.5 Low

CVSS3

3.5 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

An address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted a malicious URL, it appears like a legitimate one on the address bar, while the content comes from other domain and presented in a window, covering the original content. A remote attacker can leverage this to perform address bar spoofing attack.

EPSS

Процентиль: 53%
0.00303
Низкий

3.5 Low

CVSS3

3.5 Low

CVSS2

Дефекты

NVD-CWE-Other