PT-2016-1818 · Mozilla · Firefox

Maryam Mehrnezhad

·

Publicado

2016-04-30

·

Atualizado

2024-12-12

·

CVE-2016-2813

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 46.0 on Android
Description The issue allows remote attackers to obtain sensitive information about a device's physical environment, and possibly discover PIN values, via a crafted web site. This is due to improper restriction of JavaScript access to orientation and motion data.
Recommendations For Mozilla Firefox versions prior to 46.0 on Android, update to version 46.0 or later to resolve the issue.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2016-01151
CVE-2016-2813
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:14572-1

Produtos afetados

Firefox