Логотип exploitDog
bind:CVE-2020-15664
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-15664

Количество 21

Количество 21

ubuntu логотип

CVE-2020-15664

почти 5 лет назад

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-15664

почти 5 лет назад

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-15664

почти 5 лет назад

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-15664

почти 5 лет назад

By holding a reference to the eval() function from an about:blank wind ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-f4gc-pc7j-rfxr

больше 3 лет назад

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2022-05936

почти 5 лет назад

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с неправильным использованием привилегированных API, позволяющая нарушителю установить расширение

CVSS3: 6.5
EPSS: Низкий
oracle-oval логотип

ELSA-2020-3643

почти 5 лет назад

ELSA-2020-3643: thunderbird security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3634

почти 5 лет назад

ELSA-2020-3634: thunderbird security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3631

почти 5 лет назад

ELSA-2020-3631: thunderbird security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3558

почти 5 лет назад

ELSA-2020-3558: firefox security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3556

почти 5 лет назад

ELSA-2020-3556: firefox security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1392-1

почти 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1391-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1384-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1383-1

почти 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2563-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2552-1

почти 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2544-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14489-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2749-1

почти 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-15664

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2020-15664

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2020-15664

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-15664

By holding a reference to the eval() function from an about:blank wind ...

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-f4gc-pc7j-rfxr

By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, Firefox ESR < 78.2, and Firefox for Android < 80.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-05936

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с неправильным использованием привилегированных API, позволяющая нарушителю установить расширение

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
oracle-oval логотип
ELSA-2020-3643

ELSA-2020-3643: thunderbird security update (IMPORTANT)

почти 5 лет назад
oracle-oval логотип
ELSA-2020-3634

ELSA-2020-3634: thunderbird security update (IMPORTANT)

почти 5 лет назад
oracle-oval логотип
ELSA-2020-3631

ELSA-2020-3631: thunderbird security update (IMPORTANT)

почти 5 лет назад
oracle-oval логотип
ELSA-2020-3558

ELSA-2020-3558: firefox security update (IMPORTANT)

почти 5 лет назад
oracle-oval логотип
ELSA-2020-3556

ELSA-2020-3556: firefox security update (IMPORTANT)

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1392-1

Security update for MozillaThunderbird

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1391-1

Security update for MozillaFirefox

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1384-1

Security update for MozillaFirefox

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1383-1

Security update for MozillaThunderbird

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2563-1

Security update for MozillaFirefox

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2552-1

Security update for MozillaThunderbird

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2544-1

Security update for MozillaFirefox

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:14489-1

Security update for MozillaFirefox

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:2749-1

Security update for MozillaFirefox

почти 5 лет назад

Уязвимостей на страницу