CVE-2020-8954: Medium severity openbrowser vulnerability
Published Jun 8, 2020
·Updated
OpenSearch Web browser 1.0.4.9 allows Intent Scheme Hijacking.[a link that opens another app in the browser can be manipulated]
Affected Software
1 affected component
Openbrowser Project Openbrowser=1.0.4.9
Event History
Jun 8, 2020
CVE Published
via MITRE·04:30 PM
Data Sourced
via MITRE·04:30 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-8954?
CVE-2020-8954 is classified as a moderate severity vulnerability due to its potential for Intent Scheme Hijacking.
2
How does CVE-2020-8954 affect the OpenSearch Web browser?
CVE-2020-8954 affects the OpenSearch Web browser by allowing malicious links to open other applications without user consent.
3
How can I fix CVE-2020-8954 in the OpenSearch Web browser?
To fix CVE-2020-8954, update the OpenSearch Web browser to a version that incorporates security patches addressing this vulnerability.
4
Who is affected by CVE-2020-8954?
Any user utilizing OpenSearch Web browser version 1.0.4.9 is affected by CVE-2020-8954.
5
What should users of OpenSearch Web browser do regarding CVE-2020-8954?
Users of the OpenSearch Web browser should immediately update to a secure version to mitigate the risks associated with CVE-2020-8954.