CVE-2014-1506 PUBLISHED CVSS 6.400000095367432 MEDIUM

Directory traversal vulnerability in Android Crash Reporter in Mozilla Firefox before 28.0 on Android allows attackers to trigger the transmission of local files to arbitrary servers, or cause a denial of service (application crash), via a crafted application that specifies Android Crash Reporter arguments.

EPSS 1.54% · 81.3th percentile

Risk Scores

CVSS v2.0
6.400000095367432
EPSS Score
1.54%
81.3th percentile

Affected Products

VendorProductVersions
mozillafirefox9.0.1, 0, 0.1
n/an/an/a
oraclesolaris11.3

Timeline

References

…and 3 more

Open in Interactive Console →