Mozilla Firefox 38.0 and Firefox ESR 38.0 allow user-assisted remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unspecified mouse and keyboard actions. NOTE: this vulnerability exists because of a CVE-2015-0821 regression.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2015-07-06T01:00:00

Updated: 2024-08-06T05:24:38.506Z

Reserved: 2015-03-25T00:00:00

Link: CVE-2015-2727

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-07-06T02:00:58.533

Modified: 2016-12-28T02:59:08.447

Link: CVE-2015-2727

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-07-02T00:00:00Z

Links: CVE-2015-2727 - Bugzilla