vendor:
Firefox
by:
L0RD
7.5
CVSS
HIGH
Denial of Service
20
CWE
Product Name: Firefox
Affected Version From: 55.0.3
Affected Version To: 55.0.3
Patch Exists: NO
Related CWE: N/A
CPE: mozilla:firefox
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10
2018
Firefox 55.0.3 – Denial of Service (PoC)
An issue was discovered in firefox 55.0.3 which an attacker can create a webpage and put javascript payload to crash user's browser or put user in non-responsive state.
Mitigation:
Disable JavaScript in the browser or use a browser with a JavaScript engine that is not vulnerable to this attack.