5
CVSSv2

CVE-2019-11733

Published: 27/09/2019 Updated: 24/08/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

It exists that passwords could be copied to the clipboard from the "Saved Logins" dialog without entering the master password, even when a master password has been set. A local attacker could potentially exploit this to obtain saved passwords.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

mozilla firefox esr

Vendor Advisories

A local attacker could obtain saved passwords ...
Synopsis Critical: firefox security update Type/Severity Security Advisory: Critical Topic An update for firefox is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring System (CVSS) base score, wh ...
Synopsis Critical: firefox security update Type/Severity Security Advisory: Critical Topic An update for firefox is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scoring System (CVSS) base score, wh ...
Mozilla Foundation Security Advisory 2019-24 Stored passwords in 'Saved Logins' can be copied without master password entry Announced August 14, 2019 Impact moderate Products Firefox, Firefox ESR Fixed in ...
An issue has been found in Firefox before 6802 When a master password is set, it is required to be entered before stored passwords can be accessed in the 'Saved Logins' dialog It was found that locally stored passwords can be copied to the clipboard through the 'copy password' context menu item without first entering the master password, allowi ...