CVE-2020-12408: Medium severity firefox vulnerability
Published Jun 2, 2020
·Updated
Last updated 24 July 2024
Other sources
When browsing a document hosted on an IP address, an attacker could insert certain characters to flip domain and path information in the address bar.
Affected Software
3 affected componentsFixes available
Mozilla Firefox<77
77
Mozilla Firefox<77.0
debian/firefox
137.0-1
Event History
Jun 2, 2020
CVE Published
12:00 AM
Jul 9, 2020
CVE Published
via MITRE·02:46 PM
Data Sourced
via MITRE·02:46 PM
DescriptionWeakness
Jan 11, 2024
Data Sourced
via Launchpad·11:38 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:21 AM
RemedyDescriptionSeverityAffected Software
Mar 27, 2025
Data Sourced
via Debian·03:31 AM
DescriptionAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is CVE-2020-12408?
CVE-2020-12408 is a vulnerability that allows an attacker to manipulate the domain and path information in the address bar when browsing a document hosted on an IP address.
2
Which software is affected by CVE-2020-12408?
Mozilla Firefox version 77 is affected by CVE-2020-12408.
3
How severe is CVE-2020-12408?
CVE-2020-12408 has a low severity rating.
4
What is the remedy for CVE-2020-12408?
Upgrading to Mozilla Firefox version 77 is the recommended remedy for CVE-2020-12408.
5
Where can I find more information about CVE-2020-12408?
You can find more information about CVE-2020-12408 on the Mozilla Bugzilla and Mozilla Security Advisories websites.