Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-23600

Опубликовано: 02 июн. 2023
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Per origin notification permissions were being stored in a way that didn't take into account what browsing context the permission was granted in. This lead to the possibility of notifications to be displayed during different browsing sessions.
This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 109.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:android:*:*
Версия до 109.0 (исключая)

EPSS

Процентиль: 41%
0.00187
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 2 лет назад

Per origin notification permissions were being stored in a way that didn't take into account what browsing context the permission was granted in. This lead to the possibility of notifications to be displayed during different browsing sessions.<br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 109.

CVSS3: 6.5
debian
больше 2 лет назад

Per origin notification permissions were being stored in a way that di ...

CVSS3: 6.5
github
больше 2 лет назад

Per origin notification permissions were being stored in a way that didn't take into account what browsing context the permission was granted in. This lead to the possibility of notifications to be displayed during different browsing sessions.<br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 109.

CVSS3: 7.5
fstec
почти 3 года назад

Уязвимость браузера Mozilla Firefox для Android, связанная с ошибками управления состоянием, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 41%
0.00187
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo