CVE-2015-7200

CVSS v2.0 7.5 (High)
75% Progress
EPSS 1.10 % (85th)
1.10% Progress
Affected Products 2
Advisories 12

The CryptoKey interface implementation in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 lacks status checking, which allows attackers to have an unspecified impact via vectors related to a cryptographic key.

Weaknesses
CWE-17
DEPRECATED: Code
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2015-11-05 05:59:24
(8 years ago)
Updated Date
2016-12-07 18:23:19
(7 years ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox 41.0.2 and prior versions cpe:2.3:a:mozilla:firefox <= 41.0.2

Configuration #2

    CPE23 From Up To
  Mozilla Firefox Esr 38.0 cpe:2.3:a:mozilla:firefox_esr:38.0
  Mozilla Firefox Esr 38.0.1 cpe:2.3:a:mozilla:firefox_esr:38.0.1
  Mozilla Firefox Esr 38.0.5 cpe:2.3:a:mozilla:firefox_esr:38.0.5
  Mozilla Firefox Esr 38.1.0 cpe:2.3:a:mozilla:firefox_esr:38.1.0
  Mozilla Firefox Esr 38.1.1 cpe:2.3:a:mozilla:firefox_esr:38.1.1
  Mozilla Firefox Esr 38.2.0 cpe:2.3:a:mozilla:firefox_esr:38.2.0
  Mozilla Firefox Esr 38.2.1 cpe:2.3:a:mozilla:firefox_esr:38.2.1
  Mozilla Firefox Esr 38.3.0 cpe:2.3:a:mozilla:firefox_esr:38.3.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...