CVE Published: 24/09/2015 |
CVE Updated: 06/08/2024 |
CVE Year: 2015 Source: mozilla |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2015-4519 Description
Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow user-assisted remote attackers to bypass intended access restrictions and discover a redirect\'s target URL via crafted JavaScript code that executes after a drag-and-drop action of an image into a TEXTBOX element.