Lucene search

K
cvelistCanonicalCVELIST:CVE-2012-0958
HistoryDec 26, 2012 - 10:00 p.m.

CVE-2012-0958

2012-12-2622:00:00
canonical
www.cve.org
2
cve-2012-0958
same origin policy
remote attackers
sensitive information
api vulnerability
unity firefox extension

AI Score

6

Confidence

Low

EPSS

0.003

Percentile

66.2%

content/unity-api.js in the unity-firefox-extension extension 2.4.1 for Firefox exposes the toDataURL function in an API call, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted webpage.

AI Score

6

Confidence

Low

EPSS

0.003

Percentile

66.2%