Lucene search

K
cve[email protected]CVE-2015-0815
HistoryApr 01, 2015 - 10:59 a.m.

CVE-2015-0815

2015-04-0110:59:13
web.nvd.nist.gov
61
cve-2015-0815
mozilla firefox
thunderbird
remote code execution
denial of service
nvd
browser security

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

10

Confidence

High

EPSS

0.066

Percentile

93.8%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

Affected configurations

NVD
Node
mozillafirefoxRange36.0.4
OR
mozillafirefox_esrRange31.5.3
OR
mozillathunderbirdRange31.5
VendorProductVersionCPE
mozillathunderbirdcpe:/a:mozilla:thunderbird::::
mozillafirefox_esrcpe:/a:mozilla:firefox_esr::::
mozillafirefoxcpe:/a:mozilla:firefox::::

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

10

Confidence

High

EPSS

0.066

Percentile

93.8%