Mozilla Firefox before 40.0 allows man-in-the-middle attackers to bypass a mixed-content protection mechanism via a feed: URL in a POST request.
References
Information
Published : 2015-08-15 18:59
Updated : 2018-10-30 09:27
NVD link : CVE-2015-4483
Mitre link : CVE-2015-4483
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
mozilla
- firefox
opensuse
- opensuse
oracle
- solaris