← Voltar para CVEs
CVE-2017-5417
N/ADescricao
When dragging content from the primary browser pane to the addressbar on a malicious site, it is possible to change the addressbar so that the displayed location following navigation does not match the URL of the newly loaded page. This allows for spoofing attacks. This vulnerability affects Firefox < 52.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado6/11/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
mozilla:firefox
Fraquezas (CWE)
CWE-20
Referencias
http://www.securityfocus.com/bid/96692(security@mozilla.org)
http://www.securitytracker.com/id/1037966(security@mozilla.org)
https://bugzilla.mozilla.org/show_bug.cgi?id=791597(security@mozilla.org)
https://www.mozilla.org/security/advisories/mfsa2017-05/(security@mozilla.org)
http://www.securityfocus.com/bid/96692(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1037966(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.mozilla.org/show_bug.cgi?id=791597(af854a3a-2127-422b-91ae-364da2661108)
https://www.mozilla.org/security/advisories/mfsa2017-05/(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.