Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-5261

Integer overflow in the WebSocketChannel class in the WebSockets subsystem in Mozilla Firefox before 48.0 and Firefox ESR < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted packets that trigger incorrect buffer-resize operations during buffering.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.4%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 7.5
References
Products affected by CVE-2016-5261


Contact Us

Shodan ® - All rights reserved