Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-33596

Опубликовано: 05 авг. 2021
Источник: nvd
CVSS3: 3.5
CVSS3: 4.1
CVSS2: 3.5
EPSS Низкий

Описание

Showing the legitimate URL in the address bar while loading the content from other domain. This makes the user believe that the content is served by a legit domain. Exploiting the vulnerability requires the user to click on a specially crafted, seemingly legitimate URL containing an embedded malicious redirect while using F-Secure Safe Browser for iOS.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:f-secure:safe:*:*:*:*:*:iphone_os:*:*
Версия до 18.4.272901 (исключая)

EPSS

Процентиль: 50%
0.00273
Низкий

3.5 Low

CVSS3

4.1 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-1021

Связанные уязвимости

github
больше 3 лет назад

Showing the legitimate URL in the address bar while loading the content from other domain. This makes the user believe that the content is served by a legit domain. Exploiting the vulnerability requires the user to click on a specially crafted, seemingly legitimate URL containing an embedded malicious redirect while using F-Secure Safe Browser for iOS.

EPSS

Процентиль: 50%
0.00273
Низкий

3.5 Low

CVSS3

4.1 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-1021