CVE-2015-0822: Infoleak
The Form Autocompletion feature in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to read arbitrary files via crafted JavaScript code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0822?
CVE-2015-0822 has a severity rating of High, indicating it poses a significant risk to affected systems.
How do I fix CVE-2015-0822?
To mitigate CVE-2015-0822, upgrade Mozilla Firefox or Thunderbird to version 36.0 or later for Firefox and 31.5 or later for Thunderbird.
Which versions of Firefox are affected by CVE-2015-0822?
CVE-2015-0822 affects Mozilla Firefox versions prior to 36.0, including all versions in the 35.x series and earlier.
Which versions of Thunderbird are vulnerable to CVE-2015-0822?
CVE-2015-0822 affects all versions of Mozilla Thunderbird prior to 31.5.
What type of vulnerability is CVE-2015-0822?
CVE-2015-0822 is a code execution vulnerability that allows remote attackers to read arbitrary files via crafted JavaScript.