CVE Database
/

CVE-2018-5117

Back to search

CVE-2018-5117

Published: Jun 11, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

If right-to-left text is used in the addressbar with left-to-right alignment, it is possible in some circumstances to scroll this text to spoof the displayed URL. This issue could result in the wrong URL being displayed as a location, which can mislead users to believe they are on a different site than the one loaded. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

VendorProductVersions

Mozilla

Thunderbird

affected
unspecified - < 52.6

Mozilla

Firefox ESR

affected
unspecified - < 52.6

Mozilla

Firefox

affected
unspecified - < 58

References

1040270
vdb-entry
x_refsource_SECTRACK
102783
vdb-entry
x_refsource_BID
DSA-4096
vendor-advisory
x_refsource_DEBIAN
RHSA-2018:0262
vendor-advisory
x_refsource_REDHAT
USN-3544-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2018:0122
vendor-advisory
x_refsource_REDHAT
DSA-4102
vendor-advisory
x_refsource_DEBIAN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now