HIGH
Directory traversal vulnerability in the DeviceStorage API in Mozilla FirefoxOS before 1.2.2 allows attackers to bypass the media sandbox protection mechanism, and read or modify arbitrary files, via a crafted application that uses a relative pathname for a DeviceStorageFile object
Published Mar 19, 2014
9.3
HIGHCVSS 2.0
EPSS 1.10%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.