CVE-2012-3987Mozilla Firefox vulnerability

CWE-2642 documents2 sources
Severity
4.0MEDIUMNVD
EPSS
0.2%
top 54.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 10
Latest updateMay 17

Description

Mozilla Firefox before 16.0 on Android assigns chrome privileges to Reader Mode pages, which allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site.

CVSS vector

AV:N/AC:H/C:P/I:P/A:NExploitability: 4.9 | Impact: 4.9

Affected Packages1 packages

NVDmozilla/firefox15.0.1+148

🔴Vulnerability Details

1
GHSA
GHSA-4q6r-v2gx-9hfg: Mozilla Firefox before 162022-05-17