Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-0802

Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl access control, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via certain content navigation that leverages the reachability of a privileged window with an unintended persistence of access to restricted internal methods.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.794
EPSS Ranking 99.0%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2015-0802


Contact Us

Shodan ® - All rights reserved