CVE-2015-4507

Modified
Published: 24 Sept 2015, 01:00
Last modified:06 Aug 2024, 06:18

Vulnerability Summary

Overall Risk (default)
low
21/100
CVSS Score
5.1 MEDIUM
v2.0 (nvd)
EPSS Score
1.2% LOW
1% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

24 Sept 2015, 01:00
Published
Vulnerability first disclosed
06 Aug 2024, 06:18
Last Modified
Vulnerability information updated

Description

The SavedStacks class in the JavaScript implementation in Mozilla Firefox before 41.0, when the Debugger API is enabled, allows remote attackers to cause a denial of service (getSlotRef assertion failure and application exit) or possibly execute arbitrary code via a crafted web site.

CVSS Metrics

  • v2.0MEDIUMScore: 5.1AV:N/AC:H/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 1.20% Percentile: 79%

Affected Systems

  • mozillafirefox

    ≤ 40.0.3

References (11)