Описание
Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attackers to obtain the full pathname via a crafted web site.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 21.0+build2-0ubuntu1 |
| lucid | ignored | end of life |
| precise | released | 21.0+build1-0ubuntu0.12.04.3 |
| quantal | released | 21.0+build1-0ubuntu0.12.10.2 |
| raring | released | 21.0+build1-0ubuntu0.12.04.2 |
| upstream | released | 21.0 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| lucid | ignored | end of life |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| upstream | needs-triage |
Показывать по
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attackers to obtain the full pathname via a crafted web site.
Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attackers to obtain the full pathname via a crafted web site.
Mozilla Firefox before 21.0 does not properly implement the INPUT elem ...
Mozilla Firefox before 21.0 does not properly implement the INPUT element, which allows remote attackers to obtain the full pathname via a crafted web site.
EPSS
4.3 Medium
CVSS2