Security Advisory

CVE-2013-1698

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-06-26 01:00:00
Last updated 2024-08-06 15:13:32
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

The getUserMedia permission implementation in Mozilla Firefox before 22.0 references the URL of a top-level document instead of the URL of a specific page, which makes it easier for remote attackers to trick users into permitting camera or microphone access via a crafted web site that uses IFRAME elements.