ZeroHour

CVE-2016-1958

CVSS 3.0
4.3 medium
EPSS
2%p82
Published
()
Modified
Description

browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL.

Vendors
oracleopensusemozilla
Products
linux, opensuse, firefox
Weakness
CWE-254
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.