We found results for “”
WS-2023-0346
Good to know:
Date: October 13, 2023
Potential Spoofing Risk through Firefox Private Relay Service. An attacker can leverage Firefox’s Relay service to send spoofing emails to users. The current Relay design increases the chance for the spoofing emails to reach the target inbox that would be otherwise blocked.
Language: Python
Severity Score
Severity Score
Weakness Type (CWE)
Insufficient Verification of Data Authenticity
CWE-345Top Fix
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | LOW |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | LOW |
Integrity (I): | LOW |
Availability (A): | LOW |