#VU50030 Information disclosure in Mozilla Firefox and Firefox ESR - CVE-2021-23961
Published: January 26, 2021 / Updated: April 19, 2021
Mozilla Firefox
Firefox ESR
Mozilla
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to the way Firefox handles requests to internal resources. A remote attacker can create a specially crafted web page and combined with slipstream research techniques collect information about hosts in internal network as well as services running on the user's local machine.