Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-12412

Опубликовано: 09 июл. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 4.3

Описание

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

РелизСтатусПримечание
bionic

released

70.0+build2-0ubuntu0.18.04.1
devel

released

70.0+build2-0ubuntu1
eoan

ignored

end of life
esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

released

70.0+build2-0ubuntu1
precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

upstream

released

70

Показывать по

EPSS

Процентиль: 51%
0.00284
Низкий

4.3 Medium

CVSS2

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
redhat
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
nvd
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

CVSS3: 4.3
debian
около 5 лет назад

By navigating a tab using the history API, an attacker could cause the ...

github
около 3 лет назад

By navigating a tab using the history API, an attacker could cause the address bar to display the incorrect domain (with the https:// scheme, a blocked port number such as '1', and without a lock icon) while controlling the page contents. This vulnerability affects Firefox < 70.

EPSS

Процентиль: 51%
0.00284
Низкий

4.3 Medium

CVSS2

4.3 Medium

CVSS3