Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-0958
HistoryDec 26, 2012 - 10:55 p.m.

Design/Logic Flaw

2012-12-2622:55:00
PRIOn knowledge base
www.prio-n.com
2

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

54.8%

content/unity-api.js in the unity-firefox-extension extension 2.4.1 for Firefox exposes the toDataURL function in an API call, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted webpage.

CPENameOperatorVersion
unity-firefox-extensioneq2.4.1

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

54.8%