CVE-2024-38313

In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*

History

12 Sep 2024, 17:48

Type Values Removed Values Added
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1878489 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1878489 - Issue Tracking, Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2024-27/ - () https://www.mozilla.org/security/advisories/mfsa2024-27/ - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
First Time Mozilla
Mozilla firefox
CWE NVD-CWE-Other
CPE cpe:2.3:a:mozilla:firefox:*:*:*:*:*:iphone_os:*:*

17 Jun 2024, 12:43

Type Values Removed Values Added
Summary
  • (es) En ciertos escenarios, un sitio web malicioso podría intentar mostrar una barra de URL de ubicación falsa que podría engañar a los usuarios en cuanto a la dirección real del sitio web. Esta vulnerabilidad afecta a Firefox para iOS &lt; 127.

13 Jun 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-13 20:15

Updated : 2024-09-12 17:48


NVD link : CVE-2024-38313

Mitre link : CVE-2024-38313

CVE.ORG link : CVE-2024-38313


JSON object : View

Products Affected

mozilla

  • firefox