4.3
CVSSv2

CVE-2015-4494

Published: 08/08/2015 Updated: 10/08/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Mozilla Firefox OS prior to 2.2 does not require the wifi-manage privilege for reading a Wi-Fi system message, which allows malicious users to obtain potentially sensitive information via a crafted app.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox os

Vendor Advisories

Mozilla Foundation Security Advisory 2015-76 Wifi direct system messages don't require a permission Announced August 6, 2015 Reporter Paul Theriault Impact Low Products Firefox OS Fixed in ...