4.3
CVSSv2

CVE-2020-6810

Published: 25/03/2020 Updated: 31/03/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

A security issue has been found in Firefox prior to 74 where, after a website had entered fullscreen mode, it could have used a previously opened popup to obscure the notification that indicates the browser is in fullscreen mode. Combined with spoofing the browser chrome, this could have led to confusing the user about the current origin of the page and credential theft or other attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Firefox could be made to crash or run programs as your login if it opened a malicious website ...
Mozilla Foundation Security Advisory 2020-08 Security Vulnerabilities fixed in Firefox 74 Announced March 10, 2020 Impact high Products Firefox Fixed in Firefox 74 ...
A security issue has been found in Firefox before 74 where, after a website had entered fullscreen mode, it could have used a previously opened popup to obscure the notification that indicates the browser is in fullscreen mode Combined with spoofing the browser chrome, this could have led to confusing the user about the current origin of the page ...