CVE-2015-2743
PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary code by leveraging a Same Origin Policy bypass.
- Mozilla Firefox
- = 31.0, 31.1.0, 31.1.1, 31.3.0, 31.5.1, 31.5.2, 31.5.3, 38.0
- Mozilla Firefox Esr
- = 31.1, 31.2, 31.3, 31.4, 31.5, 31.6.0, 31.7.0
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 4.7% (91th percentile)
- Weakness
- CWE-17
- NVD status
- Modified
- Published
- 2015-07-06
CVE-2015-2743 at NVD
No indexed exploits for CVE-2015-2743 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2015-2743 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.