#VU18562 Spoofing attack in Mozilla Firefox - CVE-2019-11697
Published: May 22, 2019
Mozilla Firefox
Mozilla
Description
The vulnerability allows a remote attacker to perform spoofing attack.
The vulnerability exists due to incorrect processing of key combinations. A remote attacker can trick the victim to press ALT and "a" keystrokes on keyboard that delays extension installation prompt. A remote attacker can spoof the page and trick the victim to install malicious extension.