Логотип exploitDog
bind:CVE-2019-9803
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-9803

Количество 5

Количество 5

ubuntu логотип

CVE-2019-9803

почти 7 лет назад

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2019-9803

почти 7 лет назад

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2019-9803

почти 7 лет назад

The Upgrade-Insecure-Requests (UIR) specification states that if UIR i ...

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-6h7p-w66v-f7vw

больше 3 лет назад

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2020-00592

почти 7 лет назад

Уязвимость спецификации Upgrade-Insecure-Requests браузера Firefox, связанная с ошибкой подтверждения источника данных, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-9803

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-9803

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-9803

The Upgrade-Insecure-Requests (UIR) specification states that if UIR i ...

CVSS3: 7.4
0%
Низкий
почти 7 лет назад
github логотип
GHSA-6h7p-w66v-f7vw

The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

CVSS3: 7.4
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-00592

Уязвимость спецификации Upgrade-Insecure-Requests браузера Firefox, связанная с ошибкой подтверждения источника данных, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 7.4
0%
Низкий
почти 7 лет назад

Уязвимостей на страницу