mozilla firefox-esr CVE-2015-0818 vulnerability in Mozilla Products
Published on March 24, 2015

product logo product logo
Mozilla Firefox before 36.0.4, Firefox ESR 31.x before 31.5.3, and SeaMonkey before 2.33.1 allow remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code with chrome privileges via vectors involving SVG hash navigation.

Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2015-0818

Want to know whenever a new CVE is published for Mozilla products? stack.watch will email you.

 
 
 

Exploit Probability

EPSS
2.09%
Percentile
83.76%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.