Security Advisory

CVE-2016-2831

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-06-13 10:00:00
Last updated 2024-08-05 23:32:21
Assigner mozilla
State PUBLISHED

Description

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.