Oval Definition:oval:org.cisecurity:def:1917
Revision Date:2017-03-03Version:3
Title:Vulnerability in addons.mozilla.org CDN from whitelist for mozAddonManager - CVE-2017-5393
Description:The mozAddonManager allows for the installation of extensions from the CDN for addons.mozilla.org, a publicly accessible site. This could allow malicious extensions to install additional extensions from the CDN in combination with an XSS attack on Mozilla AMO sites.
Family:windowsClass:vulnerability
Status:DRAFTReference(s):MFSA2017-01
CVE-2017-5393
Platform(s):Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Mozilla Firefox Mainline
Definition Synopsis
  • Mozilla Firefox Mainline release is installed
  • AND Check if Mozilla Firefox Mainline version less than 51.0
  • BACK