CVE-2015-4519: Infoleak
Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow user-assisted remote attackers to bypass intended access restrictions and discover a redirect's target URL via crafted JavaScript code that executes after a drag-and-drop action of an image into a TEXTBOX element.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4519?
CVE-2015-4519 is considered a moderate severity vulnerability due to its potential to allow information disclosure.
How do I fix CVE-2015-4519?
To fix CVE-2015-4519, you should upgrade to Mozilla Firefox version 41.0 or later.
What versions of Mozilla Firefox are affected by CVE-2015-4519?
CVE-2015-4519 affects Mozilla Firefox versions prior to 41.0 and Firefox ESR versions prior to 38.3.
What type of attack does CVE-2015-4519 enable?
CVE-2015-4519 enables user-assisted remote attackers to bypass access restrictions via crafted JavaScript.
Can CVE-2015-4519 lead to unauthorized access?
Yes, through CVE-2015-4519, attackers can discover a redirect's target URL, potentially leading to unauthorized access.