CVE-2012-3993

Firefox 5.0 - 15.0.1 __exposedProps__ XCS Code Execution

Title source: metasploit
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2012-3993. PoCs published by Metasploit, Mariusz Mlynski, moz_bug_r_a4, joev, including Metasploit module exploits/multi/browser/firefox_proto_crmfrequest.

AI-analyzed exploit summary This Metasploit module exploits CVE-2013-1710 in Firefox 5.0-15.0.1 by manipulating the __exposedProps__ property to gain chrome-privileged context and install a malicious addon via the AddonManager API.

Description

The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 does not properly interact with failures of InstallTrigger methods, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted web site, related to an "XrayWrapper pollution" issue.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalmultiple
https://www.exploit-db.com/exploits/30474

This Metasploit module exploits CVE-2013-1710 in Firefox 5.0-15.0.1 by manipulating the __exposedProps__ property to gain chrome-privileged context and install a malicious addon via the AddonManager API.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Complex
Reliability
Reliable
Target: Mozilla Firefox 5.0 - 15.0.1
No auth needed
Prerequisites: Victim must visit a malicious webpage · Firefox version between 5.0 and 15.0.1
devstral-2 · analyzed Feb 18, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Mariusz Mlynski, moz_bug_r_a4, joev · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/browser/firefox_proto_crmfrequest.rb

This Metasploit module exploits CVE-2012-3993 in Firefox 5.0-15.0.1 by manipulating __exposedProps__ to gain chrome-privileged context and install a malicious addon via the AddonManager API. It combines CVE-2012-3993 and CVE-2013-1710 to achieve remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Complex
Reliability
Reliable
Target: Mozilla Firefox 5.0 to 15.0.1
No auth needed
Prerequisites: Victim must visit a malicious webpage · Firefox version between 5.0 and 15.0.1
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (17)

Core 17
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50904
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50984
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50935
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50856
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50892
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2012-1351.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/79153
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/50936
Broken Link vdb-entry x_refsource_osvdb
http://osvdb.org/86111
Issue Tracking, Vendor Advisory x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=768101
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/55318
Mailing List, Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2012-10/msg00010.html
Third Party Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2012:163
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1611-1
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/56119

Scores

EPSS 0.4261
EPSS Percentile 98.5%

Details

CWE
CWE-269
Status published
Products (47)
mozilla/firefox 10.0
mozilla/firefox 10.0.1
mozilla/firefox 10.0.2
mozilla/firefox 10.0.3
mozilla/firefox 10.0.4
mozilla/firefox 10.0.5
mozilla/firefox 10.0.6
mozilla/firefox 10.0.7
mozilla/firefox 1.0 (2 CPE variants)
mozilla/firefox 1.0.1
... and 37 more
Published Oct 10, 2012
Tracked Since Feb 18, 2026