---
cve: "CVE-2024-11701"
severity: "MEDIUM"
cvss: 4.3
epss: "40%"
vendor: "Mozilla"
kev: false
exploited: false
published: "2024-11-26 14:15:19"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T15:21:55+02:00"
---

# CVE-2024-11701

> 4.3 MEDIUM

## Beschreibung

The incorrect domain may have been displayed in the address bar during an interrupted navigation attempt. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 133 and Thunderbird < 133.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Erforderlich | good |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Keine | good |
| I Integrität | Gering | warn |
| A Verfügbarkeit | Keine | good |

## Referenzen

- <https://bugzilla.mozilla.org/show_bug.cgi?id=1914797>
- <https://www.mozilla.org/security/advisories/mfsa2024-63/>
- <https://www.mozilla.org/security/advisories/mfsa2024-67/>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-11701) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
