Логотип exploitDog
bind:CVE-2018-5133
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-5133

Количество 5

Количество 5

ubuntu логотип

CVE-2018-5133

больше 7 лет назад

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2018-5133

больше 7 лет назад

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2018-5133

больше 7 лет назад

If the "app.support.baseURL" preference is changed by a malicious loca ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-9rwp-r33f-q36c

больше 3 лет назад

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2021-00354

около 8 лет назад

Уязвимость реализации конфигурации app.support.baseURL браузера Mozilla Firefox, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-5133

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
1%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-5133

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
1%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-5133

If the "app.support.baseURL" preference is changed by a malicious loca ...

CVSS3: 6.5
1%
Низкий
больше 7 лет назад
github логотип
GHSA-9rwp-r33f-q36c

If the "app.support.baseURL" preference is changed by a malicious local program to contain HTML and script content, this content is not sanitized. It will be executed if a user loads "chrome://browser/content/preferences/in-content/preferences.xul" directly in a tab and executes a search. This stored preference is also executed whenever an EME video player plugin displays a CDM-disabled message as a notification message. This vulnerability affects Firefox < 59.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-00354

Уязвимость реализации конфигурации app.support.baseURL браузера Mozilla Firefox, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
1%
Низкий
около 8 лет назад

Уязвимостей на страницу