Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-29987
HistoryAug 17, 2021 - 8:15 p.m.

Design/Logic Flaw

2021-08-1720:15:00
PRIOn knowledge base
www.prio-n.com
8

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.0%

After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be displayed in a different position but still record a click in the default location, making it possible to trick a user into accepting a permission they did not want to. This bug only affects Firefox on Linux. Other operating systems are unaffected.. This vulnerability affects Firefox < 91 and Thunderbird < 91.

CPENameOperatorVersion
firefoxlt91.0
thunderbirdlt91.0

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.0%