Логотип exploitDog
bind:CVE-2015-7184
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-7184

Количество 5

Количество 5

ubuntu логотип

CVE-2015-7184

больше 9 лет назад

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2015-7184

больше 9 лет назад

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-7184

больше 9 лет назад

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2015-7184

больше 9 лет назад

The fetch API implementation in Mozilla Firefox before 41.0.2 does not ...

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-xj5m-432r-gpqm

около 3 лет назад

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-7184

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 6.8
0%
Низкий
больше 9 лет назад
redhat логотип
CVE-2015-7184

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 4.3
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2015-7184

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

CVSS2: 6.8
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2015-7184

The fetch API implementation in Mozilla Firefox before 41.0.2 does not ...

CVSS2: 6.8
0%
Низкий
больше 9 лет назад
github логотип
GHSA-xj5m-432r-gpqm

The fetch API implementation in Mozilla Firefox before 41.0.2 does not restrict access to the HTTP response body in certain situations where user credentials are supplied but the CORS cross-origin request algorithm is improperly followed, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.

0%
Низкий
около 3 лет назад

Уязвимостей на страницу