CVE-2014-8631 PUBLISHED CVSS 4.300000190734863 MEDIUM

The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 supports native-interface passing, which allows remote attackers to bypass intended DOM object restrictions via a call to an unspecified method.

EPSS 0.22% · 44.1th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
0.22%
44.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
mozillaseamonkey0
mozillafirefox0

Timeline

References

Open in Interactive Console →