Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-15665

Опубликовано: 05 окт. 2020
Источник: redhat
CVSS3: 4.7
EPSS Низкий

Описание

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5firefoxOut of support scope
Red Hat Enterprise Linux 6firefoxNot affected
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 8firefoxNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-451
https://bugzilla.redhat.com/show_bug.cgi?id=1885176firefox: Address bar not reset when choosing to stay on a page after the beforeunload dialog is shown

EPSS

Процентиль: 41%
0.00186
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 5 лет назад

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

CVSS3: 4.3
nvd
около 5 лет назад

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

CVSS3: 4.3
debian
около 5 лет назад

Firefox did not reset the address bar after the beforeunload dialog wa ...

github
больше 3 лет назад

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

CVSS3: 4.3
fstec
около 5 лет назад

Уязвимость браузера Mozilla Firefox, связанная с ошибками представления информации пользовательским интерфейсом, позволяющая нарушителю проводить спуфинг-атаки

EPSS

Процентиль: 41%
0.00186
Низкий

4.7 Medium

CVSS3

Уязвимость CVE-2020-15665