CVE-2020-26953
CVE-2020-26953
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
09 Dec 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →