Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-15653

EPSS 0.28% · P52
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-15653

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links. This could have led to security issues for websites relying on sandbox configurations that allowed popups and hosted arbitrary content. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mozilla Firefox、Firefox ESR和Thunderbird 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mozilla Firefox等都是美国Mozilla基金会的产品。Mozilla Firefox是一款开源Web浏览器。Mozilla Firefox ESR是Firefox(Web浏览器)的一个延长支持版本。Mozilla Thunderbird是一套从Mozilla Application Suite独立出来的电子邮件客户端软件。 Mozilla Firefox 79之前版本、Firefox ESR 78.1之前版本和Thunderbird 78.1之前版本中存在安全漏洞。攻击者可利用该漏洞绕过现有
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
MozillaFirefox ESR unspecified ~ 78.1 -
MozillaFirefox unspecified ~ 79 -
MozillaThunderbird unspecified ~ 78.1 -

II. Public POCs for CVE-2020-15653

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-15653

登录查看更多情报信息。

Same Patch Batch · Mozilla · 2020-08-10 · 15 CVEs total

CVE-2020-15647Mozilla Firefox 信息泄露漏洞
CVE-2020-15648Mozilla Firefox和Thunderbird 安全漏洞
CVE-2020-15649Mozilla Firefox ESR 代码问题漏洞
CVE-2020-15650Mozilla Firefox ESR 安全漏洞
CVE-2020-15651Mozilla Firefox 输入验证错误漏洞
CVE-2020-15652Mozilla Firefox、Firefox ESR和Thunderbird 访问控制错误漏洞
CVE-2020-15654Mozilla Firefox、Firefox ESR和Thunderbird 安全漏洞
CVE-2020-15655Mozilla Firefox、Firefox ESR和Thunderbird 信息泄露漏洞
CVE-2020-15656Mozilla Firefox、Firefox ESR和Thunderbird 安全漏洞
CVE-2020-15657Mozilla Firefox、Firefox ESR和Thunderbird 代码问题漏洞
CVE-2020-15658Mozilla Firefox、Firefox ESR和Thunderbird 代码问题漏洞
CVE-2020-15659Mozilla Firefox、Firefox ESR和Thunderbird 缓冲区错误漏洞
CVE-2020-15661Mozilla Firefox 安全漏洞
CVE-2020-15662Mozilla Firefox 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2020-15653

No comments yet


Leave a comment