CVE-2022-38163

A Drag and Drop spoof vulnerability was discovered in F-Secure SAFE Browser for Android and iOS version 19.0 and below. Drag and drop operation by user on address bar could lead to a spoofing of the address bar.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:f-secure:safe:*:*:*:*:*:android:*:*
cpe:2.3:a:f-secure:safe:*:*:*:*:*:iphone_os:*:*

History

29 Nov 2022, 18:07

Type Values Removed Values Added
References (CONFIRM) https://www.f-secure.com/en/home/support/security-advisories/cve-2022-38163 - (CONFIRM) https://www.f-secure.com/en/home/support/security-advisories/cve-2022-38163 - Vendor Advisory

15 Nov 2022, 23:15

Type Values Removed Values Added
Summary WithSecure through 2022-08-10 allows attackers to cause a denial of service (issue 2 of 5). A Drag and Drop spoof vulnerability was discovered in F-Secure SAFE Browser for Android and iOS version 19.0 and below. Drag and drop operation by user on address bar could lead to a spoofing of the address bar.
References
  • (CONFIRM) https://www.f-secure.com/en/home/support/security-advisories/cve-2022-38163 -

10 Nov 2022, 14:41

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.5
CPE cpe:2.3:a:f-secure:safe:*:*:*:*:*:android:*:*
cpe:2.3:a:f-secure:safe:*:*:*:*:*:iphone_os:*:*
CWE NVD-CWE-noinfo
First Time F-secure safe
F-secure
References (MISC) https://withsecure.com - (MISC) https://withsecure.com - Vendor Advisory
References (MISC) https://www.f-secure.com/en/home/support/security-advisories - (MISC) https://www.f-secure.com/en/home/support/security-advisories - Vendor Advisory

07 Nov 2022, 15:30

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-07 15:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-38163

Mitre link : CVE-2022-38163

CVE.ORG link : CVE-2022-38163


JSON object : View

Products Affected

f-secure

  • safe