ZeroHour

CVE-2016-1939

CVSS 3.0
5.3 medium
EPSS
2%p77
Published
()
Modified
Description

Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.

Vendors
opensusemozilla
Products
leap, opensuse, firefox
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.