vendor:
Firefox
by:
Asheesh Kumar Mani Tripathi
8,8
CVSS
HIGH
Denial of Service
20
CWE
Product Name: Firefox
Affected Version From: Mozilla Firefox 3.6
Affected Version To: Mozilla Firefox 3.6
Patch Exists: NO
Related CWE: N/A
CPE: a:mozilla:firefox:3.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2020
Mozilla Firefox 3.6 plenitude String Crash(0day) Exploit
Mozilla Firefox is a popular internet browser. This bug is a typical result when attacker try to write plenitude String in document.write() function. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page.
Mitigation:
User interaction is required to exploit this vulnerability in that the target must visit a malicious web page. Therefore, users should be aware of malicious websites and should not visit them.