CVE-2012-1955: Medium severity firefox vulnerability
Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 allow remote attackers to spoof the address bar via vectors involving history.forward and history.back calls.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1955?
CVE-2012-1955 is classified as a moderate severity vulnerability.
How do I fix CVE-2012-1955?
To fix CVE-2012-1955, users should upgrade to the latest version of affected software such as Mozilla Firefox or Thunderbird.
Which versions are affected by CVE-2012-1955?
CVE-2012-1955 affects Mozilla Firefox versions 4.0 through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird versions 5.0 through 13.0, and certain versions of SeaMonkey.
What type of attacks can exploit CVE-2012-1955?
CVE-2012-1955 can be exploited by remote attackers to spoof the address bar, potentially misleading users.
Is there a workaround for CVE-2012-1955?
There is no recommended workaround for CVE-2012-1955, users should apply the available updates.