Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24922
HistoryApr 10, 2020 - 1:09 a.m.

Phishing Attacks

2020-04-1001:09:14
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.01 Low

EPSS

Percentile

83.9%

firefox is vulnerable to phishing attacks. The vulnerability exists as a flaw was found in the way Firefox handled RSS and Atom feeds. Invalid RSS or Atom content loaded over HTTPS caused Firefox to display the address of said content in the location bar, but not the content in the main window. The previous content continued to be displayed. An attacker could use this flaw to perform phishing attacks, or trick users into thinking they are visiting the site reported by the location bar, when the page is actually content controlled by an attacker.