Mozilla Firefox 38.0 and Firefox ESR 38.0 allow user-assisted remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unspecified mouse and keyboard actions. NOTE: this vulnerability exists because of a CVE-2015-0821 regression.
Metrics
Affected Vendors & Products
References
History
Tue, 22 Oct 2024 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | ||
Vendors & Products |
Mozilla firefox Esr
|

Status: PUBLISHED
Assigner: mozilla
Published: 2015-07-06T01:00:00
Updated: 2024-08-06T05:24:38.506Z
Reserved: 2015-03-25T00:00:00
Link: CVE-2015-2727

No data.

Status : Deferred
Published: 2015-07-06T02:00:58.533
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-2727
