Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Harshit Mahendra

#47471of 53,639
5.3Total CVSS
Vulnerabilities · 1
PT-2021-7425
5.3
2021-06-01
Mozilla · Firefox For Android · CVE-2021-29965
**Name of the Vulnerable Software and Affected Versions** Firefox for Android versions prior to 89 **Description** The issue is related to how Firefox for Android handles HTTP Authentication dialogs. A malicious website could trigger an HTTP Authentication dialog, potentially causing the built-in password manager to suggest passwords for the wrong website. This could allow a remote attacker to access confidential data. The estimated number of potentially affected devices is not specified. **Recommendations** For Firefox for Android versions prior to 89, update to version 89 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the built-in password manager for HTTP Authentication dialogs until the update is applied.