cve/2024/CVE-2024-53975.md
2025-09-29 21:09:30 +02:00

19 lines
894 B
Markdown

### [CVE-2024-53975](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-53975)
![](https://img.shields.io/static/v1?label=Product&message=Firefox%20for%20iOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=0%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=unspecified%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=SSL%20security%20padlock%20icon%20could%20be%20visually%20spoofed%20to%20look%20secure%20on%20an%20HTTP%20page&color=brightgreen)
### Description
Accessing a non-secure HTTP site that uses a non-existent port may cause the SSL padlock icon in the location URL bar to, misleadingly, appear secure. This vulnerability affects Firefox for iOS < 133.
### POC
#### Reference
- https://bugzilla.mozilla.org/show_bug.cgi?id=1843467
#### Github
No PoCs found on GitHub currently.