User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of Danyil Vasilenko's Bolt Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects the Bolt Browser version 1.4 and prior versions.
References
Link | Resource |
---|---|
https://www.rafaybaloch.com/2020/10/multiple-address-bar-spoofing-vulnerabilities.html | Exploit Third Party Advisory |
https://blog.rapid7.com/2020/10/20/vulntober-multiple-mobile-browser-address-bar-spoofing-vulnerabilities/ | Exploit Mitigation Third Party Advisory |
Configurations
Information
Published : 2020-10-20 10:15
Updated : 2020-10-21 06:33
NVD link : CVE-2020-7370
Mitre link : CVE-2020-7370
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
boltbrowser
- bolt_browser