Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-5420

Опубликовано: 11 июн. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

A "javascript:" url loaded by a malicious page can obfuscate its location by blanking the URL displayed in the addressbar, allowing for an attacker to spoof an existing page without the malicious page's address being displayed correctly. This vulnerability affects Firefox < 52.

РелизСтатусПримечание
devel

not-affected

52.0.1+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [52.0+build2-0ubuntu0.14.04.1]]
precise

released

52.0+build2-0ubuntu0.12.04.1
trusty

released

52.0+build2-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [52.0+build2-0ubuntu0.14.04.1]
upstream

released

52.0
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

52.0+build2-0ubuntu0.16.04.1
yakkety

released

52.0+build2-0ubuntu0.16.10.1

Показывать по

EPSS

Процентиль: 60%
0.00398
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
больше 7 лет назад

A "javascript:" url loaded by a malicious page can obfuscate its location by blanking the URL displayed in the addressbar, allowing for an attacker to spoof an existing page without the malicious page's address being displayed correctly. This vulnerability affects Firefox < 52.

CVSS3: 6.5
debian
больше 7 лет назад

A "javascript:" url loaded by a malicious page can obfuscate its locat ...

CVSS3: 6.5
github
больше 3 лет назад

A "javascript:" url loaded by a malicious page can obfuscate its location by blanking the URL displayed in the addressbar, allowing for an attacker to spoof an existing page without the malicious page's address being displayed correctly. This vulnerability affects Firefox < 52.

suse-cvrf
почти 9 лет назад

Security update for MozillaFirefox, mozilla-nss

EPSS

Процентиль: 60%
0.00398
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3