CVE-2020-12397
CVSS v3.1
4.3 (Medium)
CVSS v2.0
4.3 (Medium)
EPSS
0.10 % (43th)
Affected Products
2
Advisories
15
By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.
Weaknesses
- CWE-346
- Origin Validation Error
- CVE Status
- PUBLISHED
- CNA
- Mozilla Corporation
- Published Date
-
2020-05-22 19:15:15
(4 years ago) - Updated Date
-
2023-02-28 15:15:07
(18 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...