CVE-2022-28870: Address Bar Spoofing Vulnerability in F-Secure SAFE Browser for Android
Published Apr 15, 2022
·Updated
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not correct if navigation fails.
Affected Software
1 affected component
F-Secure Safe Android<=18.6
Remediation
Information
FIX: A fix has been released in the automatic update channel since 13th, April 2022. No user action is required.
Event History
Apr 15, 2022
CVE Published
via MITRE·10:20 AM
Data Sourced
via MITRE·10:20 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-28870?
CVE-2022-28870 is a vulnerability that affects F-Secure SAFE browser and allows for address bar spoofing during a phishing attack.
2
What is the severity of CVE-2022-28870?
CVE-2022-28870 has a severity rating of medium (4.3).
3
How does CVE-2022-28870 impact F-Secure SAFE browser?
CVE-2022-28870 allows a maliciously crafted website to perform address bar spoofing in F-Secure SAFE browser.
4
How can I fix CVE-2022-28870 in F-Secure SAFE browser?
To fix CVE-2022-28870, users should update their F-Secure SAFE browser to the latest version provided by F-Secure.
5
Where can I find more information about CVE-2022-28870?
You can find more information about CVE-2022-28870 on F-Secure's security advisories page.