Mozilla Firefox 38.0 and Firefox ESR 38.0 allow user-assisted remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unspecified mouse and keyboard actions. NOTE: this vulnerability exists because of a CVE-2015-0821 regression.
History

Tue, 22 Oct 2024 14:00:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:mozilla:firefox_esr:38.0:*:*:*:*:*:*:*
Vendors & Products Mozilla firefox Esr

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2024-08-06T05:24:38.506Z

Reserved: 2015-03-25T00:00:00

Link: CVE-2015-2727

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-07-06T02:00:58.533

Modified: 2024-11-21T02:27:55.590

Link: CVE-2015-2727

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-07-02T00:00:00Z

Links: CVE-2015-2727 - Bugzilla