PT-2016-2519 · Mozilla · Firefox
Rafay Baloch
+1
·
Published
2016-08-05
·
Updated
2024-12-12
·
CVE-2016-5267
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Mozilla Firefox versions prior to 48.0 on Android
Description
The issue exists due to insufficient input validation, allowing a remote attacker to spoof the address bar by using left-to-right characters in conjunction with a right-to-left character set.
Recommendations
For versions prior to 48.0 on Android, update to version 48.0 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox