CVE Published: 07/01/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: mozilla |
Vendor: Mozilla |
Product: Firefox Status : PUBLISHED
CVE-2020-26979 Description
When a user typed a URL in the address bar or the search bar and quickly hit the enter key, a website could sometimes capture that event and then redirect the user before navigation occurred to the desired, entered address. To construct a convincing spoof the attacker would have had to guess what the user was typing, perhaps by suggesting it. This vulnerability affects Firefox < 84.
CWE-ID: CWE Name: When entering an address in the address or search bars, a website could have redirected the user before they were navigated to the intended url Source: Mozilla
Common Attack Pattern Enumeration and Classification (CAPEC)