VDB
CVE-2023-32210
CVE-2023-32210
PUBLISHED
In Mozilla Firefox und Mozilla Firefox ESR existieren mehrere Schwachstellen. Die Fehler bestehen aufgrund mehrerer fehlerhafter Verarbeitungen von Benutzerdaten, eines Clickjacking-Angriffs, Lecks in der Skriptbasis-URL in Service Workern und weil Dokumente fälschlicherweise eine Reihenfolge der Hauptobjekte annehmen. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um Informationen falsch darzustellen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen offenzulegen.
EPSS 0.18% · 39.9th percentile
Risk Scores
EPSS Score
0.18%
39.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amazon | Amazon Linux 2 | |
| Gentoo | Gentoo Linux | |
| Xerox | Xerox FreeFlow Print Server v2 | |
| Fedora | Fedora Linux | |
| Xerox | Xerox FreeFlow Print Server v7 for Solaris | |
| Xerox | Xerox FreeFlow Print Server v9 | |
| Ubuntu | Ubuntu Linux | |
| Debian | Debian Linux | |
| SUSE | SUSE Linux | |
| Oracle | Oracle Linux | |
| Red Hat | Red Hat Enterprise Linux |
Exploit Intelligence
Timeline
- May 9, 2023 CVE Published
- Jun 20, 2023 EPSS Score
- Jul 25, 2023 EPSS Score
- Aug 30, 2023 EPSS Score
- Oct 4, 2023 EPSS Score
- Nov 8, 2023 EPSS Score
- Dec 14, 2023 EPSS Score
- Jan 18, 2024 EPSS Score
- Feb 22, 2024 EPSS Score
- Mar 29, 2024 EPSS Score
- May 3, 2024 EPSS Score
- Jun 7, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1172.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1172 advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2023-16/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2023-17/ advisory
- https://www.debian.org/security/2023/dsa-5400 advisory
- https://lists.debian.org/debian-lts-announce/2023/05/msg00009.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014858.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014859.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014861.html advisory
- https://ubuntu.com/security/notices/USN-6074-1 advisory
- https://ubuntu.com/security/notices/USN-6074-2 advisory
- https://access.redhat.com/errata/RHSA-2023:3137 advisory
- https://access.redhat.com/errata/RHSA-2023:3138 advisory
- https://access.redhat.com/errata/RHSA-2023:3139 advisory
- https://access.redhat.com/errata/RHSA-2023:3140 advisory
- https://access.redhat.com/errata/RHSA-2023:3141 advisory
- https://access.redhat.com/errata/RHSA-2023:3142 advisory
- https://access.redhat.com/errata/RHSA-2023:3143 advisory
- https://oss.oracle.com/pipermail/el-errata/2023-May/013975.html advisory
- https://access.redhat.com/errata/RHSA-2023:3220 advisory
…and 13 more