Moz-Icon Protocol Information Leakage Vulnerability

Moz-Icon Protocol Information Leakage Vulnerability

CVE-2018-5140 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content even when otherwise prohibited. This could allow for information leakage of which applications are associated with specific MIME types by a malicious page. This vulnerability affects Firefox < 59.

Learn more about our Web App Pen Testing.