Revision Date: | 2017-03-03 | Version: | 3 |
Title: | Vulnerability in addons.mozilla.org CDN from whitelist for mozAddonManager - CVE-2017-5393 |
Description: | The mozAddonManager allows for the installation of extensions from the CDN for addons.mozilla.org, a publicly accessible site. This could allow malicious extensions to install additional extensions from the CDN in combination with an XSS attack on Mozilla AMO sites. |
Family: | windows | Class: | vulnerability |
Status: | DRAFT | Reference(s): | MFSA2017-01 CVE-2017-5393
|
Platform(s): | Microsoft Windows 10 Microsoft Windows 7 Microsoft Windows 8 Microsoft Windows 8.1 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2012 Microsoft Windows Server 2012 R2 Microsoft Windows Server 2016 Microsoft Windows Vista Microsoft Windows XP
| Product(s): | Mozilla Firefox Mainline
|
Definition Synopsis |
Mozilla Firefox Mainline release is installed AND Check if Mozilla Firefox Mainline version less than 51.0
|