Security Advisory

CVE-2012-4203

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-11-21 11:00:00
Last updated 2024-08-06 20:28:07
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarklets, which allows user-assisted remote attackers to run arbitrary programs by leveraging a javascript: URL in a bookmark.