Home / Vulnerabilities / CVE-2015-4495
HIGH SEVERITY
CVE-2015-4495 Mozilla · Firefox

Mozilla Firefox Security Feature Bypass Vulnerability

Technical Severity

CVSS v3.1 Metrics

HIGH
8.8 / 10
Minimal Risk Critical
Vector Specification
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation Likelihood

EPSS Prediction

71.57 %
Predictive Probability
Percentile Rank
98.7 th

Documented as more likely to be exploited than 98.7% of known CVEs.

Detection Date

May 25, 2022

Remediation Due

Jun 15, 2022

CISA Catalog Active

Threat Analysis

Moxilla Firefox allows remote attackers to bypass the Same Origin Policy to read arbitrary files or gain privileges.

Remediation Directive

Apply updates per vendor instructions.

External Intelligence