PT-2022-4927 · Mozilla+1 · Firefox+1

James Lee

·

Published

2022-02-08

·

Updated

2024-12-12

·

CVE-2022-22762

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Firefox for Android versions prior to 97
Description The issue is related to incorrect limitation of visualized user interface layers in Mozilla Firefox, which could allow a remote attacker to conduct spoofing attacks. Under certain circumstances, a JavaScript alert could have been shown while another website was displayed underneath it, potentially tricking the user.
Recommendations For Firefox for Android versions prior to 97, update to version 97 or later to resolve the issue.

Exploit

Fix

Clickjacking

UI Misrepresentation of Critical Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-1230
ALT-PU-2022-2930
ALT-PU-2023-1139
ALT-PU-2023-4336
ALT-PU-2023-4339
BDU:2022-06108
CVE-2022-22762
OPENSUSE-SU-2024:11837-1
OPENSUSE-SU-2024:14572-1

Affected Products

Alt Linux
Firefox