CVE-2013-1727
18.09.2013, 10:08
Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file.
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 ≤ 23.0.1 |
mozilla | firefox | 19.0 |
mozilla | firefox | 19.0.1 |
mozilla | firefox | 19.0.2 |
mozilla | firefox | 20.0 |
mozilla | firefox | 20.0.1 |
mozilla | firefox | 21.0 |
mozilla | firefox | 22.0 |
mozilla | firefox | 23.0 |
𝑥
= Vulnerable software versions
References