Security Advisory

CVE-2020-15649

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-08-10 17:43:24
Last updated 2024-08-04 13:22:30
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

Given an installed malicious file picker application, an attacker was able to steal and upload local files of their choosing, regardless of the actually files picked. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 68.11.