Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-15677
Description:By exploiting an Open Redirect vulnerability on a website, an attacker could have spoofed the site displayed in the download file dialog to show the original site (the one suffering from the open redirect) rather than the site the file was actually downloaded from. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.
Test IDs: 1.3.6.1.4.1.25623.1.0.853550   1.3.6.1.4.1.25623.1.1.4.2020.3091.1   1.3.6.1.4.1.25623.1.0.853536  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-15677
Debian Security Information: DSA-4770 (Google Search)
https://www.debian.org/security/2020/dsa-4770
https://security.gentoo.org/glsa/202010-02
https://bugzilla.mozilla.org/show_bug.cgi?id=1641487
https://bugzilla.mozilla.org/show_bug.cgi?id=1641487
https://www.mozilla.org/security/advisories/mfsa2020-42/
https://www.mozilla.org/security/advisories/mfsa2020-42/
https://www.mozilla.org/security/advisories/mfsa2020-43/
https://www.mozilla.org/security/advisories/mfsa2020-43/
https://www.mozilla.org/security/advisories/mfsa2020-44/
https://www.mozilla.org/security/advisories/mfsa2020-44/
https://lists.debian.org/debian-lts-announce/2020/10/msg00020.html
SuSE Security Announcement: openSUSE-SU-2020:1780 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00074.html
SuSE Security Announcement: openSUSE-SU-2020:1785 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00077.html




© 1998-2025 E-Soft Inc. All rights reserved.