CVE-2015-4498
CVE Information
CVE ID
CVE-2015-4498
Severity
HIGH
CVSS 7.5
Publish Date
2015-08-29
Description
The add-on installation feature in Mozilla Firefox before 40.0.3 and Firefox ESR 38.x before 38.2.1 allows remote attackers to bypass an intended user-confirmation requirement by constructing a crafted data: URL and triggering navigation to an arbitrary http: or https: URL at a certain early point in the installation process.
Collection Date
2026-01-13
Impact Summary
Affected Hosts
1
Related Incidents
0
Related Alerts
0
Affected Hosts (1)
| Hostname | OS Type | Severity | Total CVEs |
|---|---|---|---|
| inbridge-ubt-24 | LINUX | CRITICAL | 2364 |