cve/2016/CVE-2016-1965.md
2024-06-18 02:51:15 +02:00

823 B

CVE-2016-1965

Description

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors involving the history.back method and the location.protocol property.

POC

Reference

Github

No PoCs found on GitHub currently.