9.3
CVSSv2

CVE-2013-1688

Published: 26/06/2013 Updated: 19/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Profiler implementation in Mozilla Firefox prior to 22.0 parses untrusted data during UI rendering, which allows user-assisted remote malicious users to execute arbitrary JavaScript code via a crafted web site.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

mozilla firefox 19.0

mozilla firefox 20.0

mozilla firefox 20.0.1

mozilla firefox 19.0.1

mozilla firefox 19.0.2

Vendor Advisories

USN-1890-1 introduced a regression in Firefox ...
Firefox could be made to crash or run programs as your login if it opened a malicious website ...
Mozilla Foundation Security Advisory 2013-52 Arbitrary code execution within Profiler Announced June 25, 2013 Reporter Mariusz Mlynski Impact High Products Firefox Fixed in Firefox ...