Closed Bug 1752086 Opened 4 years ago Closed 4 years ago

[ 0day Vulnerability ] XSS at Mozilla Firefox Bookmarks

Categories

(Firefox :: Bookmarks & History, defect)

defect

Tracking

()

RESOLVED DUPLICATE of bug 1752087

People

(Reporter: dumaicyberteam2000, Unassigned)

Details

User Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/97.0.4692.99 Safari/537.36

Steps to reproduce:

Hi,

I found an XSS vulnerability in Bookmarks in Mozilla Firefox Browser. I don't know if this will be 0day Vulnerability or not, until now my community and I are looking for practical scenarios so that it can have an impact on other Mozilla Firefox Browser users.

I should have reported this sooner to you so you can check it too.
Follow Me :)

Steps :

  1. Open your Mozilla Firefox Browser

  2. Add Bookmarks

  3. Then add the url:
    javascript:alert(document.domain)

  4. Then open the victim's browser, see xss triggered in the victim's browser

  5. At first I thought it was a cookie from myself, but when I checked on another website, it turned out to be a different cookie.

Actual results:

Impact of stored XSS attacks
If an attacker can control a script that is executed in the victim's browser, then they can typically fully compromise that user. The attacker can carry out any of the actions that are applicable to the impact of reflected XSS vulnerabilities.

Reference :
https://www.youtube.com/watch?v=tTEethBKkRc

Expected results:

Supporting Report :

  1. Video
    Download Now :
    https://drive.google.com/file/d/1PzT7Dmqn4XzGN68-mcVOBzRQJA-Vb56Z/view?usp=sharing

Thanks
Regards,

Aidil Arief
Secrash Academy

Hi,

Sorry for my carelessness in posting here.

(In reply to Aidil Arief from comment #1)

Hi,

Sorry for my carelessness in posting here.

Group: mobile-core-security → firefox-core-security
Component: Security: Android → Bookmarks & History
Product: Fenix → Firefox

Hi,

I think it's universal XSS.

Here's a Reference:
https://labs.detectify.com/2012/10/05/universal-xss-in-opera/

Status: UNCONFIRMED → RESOLVED
Closed: 4 years ago
Resolution: --- → DUPLICATE
Group: firefox-core-security
You need to log in before you can comment on or make changes to this bug.