Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-0414

Опубликовано: 07 фев. 2008
Источник: redhat
EPSS Низкий

Описание

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

Отчет

The Red Hat Product Security has rated this issue as having moderate security impact, a future updates will address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=432040mozilla: multiple file input focus stealing vulnerabilities

EPSS

Процентиль: 81%
0.01675
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

nvd
больше 17 лет назад

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

debian
больше 17 лет назад

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user ...

github
больше 3 лет назад

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

EPSS

Процентиль: 81%
0.01675
Низкий