Логотип exploitDog
bind:CVE-2010-0172
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-0172

Количество 4

Количество 4

ubuntu логотип

CVE-2010-0172

больше 15 лет назад

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2010-0172

больше 15 лет назад

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2010-0172

больше 15 лет назад

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the as ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-34rw-q4gp-cwxm

больше 3 лет назад

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2010-0172

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

CVSS2: 4.3
1%
Низкий
больше 15 лет назад
nvd логотип
CVE-2010-0172

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

CVSS2: 4.3
1%
Низкий
больше 15 лет назад
debian логотип
CVE-2010-0172

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the as ...

CVSS2: 4.3
1%
Низкий
больше 15 лет назад
github логотип
GHSA-34rw-q4gp-cwxm

toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу