#VU29576 Permissions, Privileges, and Access Controls in Firefox for Android
Published: July 8, 2020 / Updated: July 8, 2020
Firefox for Android
Mozilla
Description
The vulnerability allows a remote attacker to gain access to sensitive information.
A Content Provider in Firefox for Android allowed local files accessible by the browser to be read by a remote webpage. A remote attacker can create a specially crafted web page, trick the victim into opening it and read sensitive information on de device, including cookies for other origins.