CVE-2015-4495

Mozilla Firefox Security Feature Bypass Vulnerability

8.8
CVSS 3.1
68.6 %
EPSS (current)
2022-05-25
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Mozilla / Firefox

Published: 2015-08-08 · Due (CISA): 2022-06-15

CWE: CWE-346 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
metasploitauxiliary/gather/firefox_pdfjs_file_theftauxiliary/gather/firefox_pdfjs_file_theft–
exploitdb37772Mozilla Firefox < 39.03 - 'pdf.js' Same Origin Policy2015-08-15

References only — no downloads or instructions.

Sources