Lucene search

K
cvelistMozillaCVELIST:CVE-2024-26284
HistoryFeb 22, 2024 - 2:56 p.m.

CVE-2024-26284

2024-02-2214:56:42
mozilla
www.cve.org
3
302 redirect
universal cross-site scripting
victim website
attacker's website
vulnerability
focus for ios
cve-2024-26284

AI Score

5.8

Confidence

High

EPSS

0

Percentile

9.0%

Utilizing a 302 redirect, an attacker could have conducted a Universal Cross-Site Scripting (UXSS) on a victim website, if the victim had a link to the attacker’s website. This vulnerability affects Focus for iOS < 123.

CNA Affected

[
  {
    "product": "Focus for iOS",
    "vendor": "Mozilla",
    "versions": [
      {
        "lessThan": "123",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

5.8

Confidence

High

EPSS

0

Percentile

9.0%

Related for CVELIST:CVE-2024-26284