CVE-2013-0757

Firefox 17.0.1 Flash Privileged Code Injection

Title source: metasploit
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2013-0757. PoCs published by Marius Mlynski, joev, sinn3r, including Metasploit module exploits/multi/browser/firefox_svg_plugin.

AI-analyzed exploit summary This Metasploit module exploits CVE-2014-9390 in Git and Mercurial clients on case-insensitive file systems by crafting a malicious repository that overwrites sensitive configuration files in the .git directory, leading to arbitrary code execution.

Description

The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not prevent modifications to the prototype of an object, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by referencing Object.prototype.__proto__ in a crafted HTML document.

Exploits (3)

exploitdb WORKING POC
rubyremotemultiple
https://www.exploit-db.com/exploits/41684

This Metasploit module exploits CVE-2014-9390 in Git and Mercurial clients on case-insensitive file systems by crafting a malicious repository that overwrites sensitive configuration files in the .git directory, leading to arbitrary code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Git (versions < 1.8.5.6, 1.9.5, 2.0.5, 2.1.4, 2.2.1) and Mercurial (versions < 3.2.3)
No auth needed
Prerequisites: Vulnerable Git or Mercurial client on a case-insensitive file system (e.g., Windows, OS X) · Victim must interact with the malicious repository
devstral-2 · analyzed Feb 19, 2026 Full analysis →
exploitdb WORKING POC
rubylocalmultiple
https://www.exploit-db.com/exploits/41683

This Metasploit module exploits CVE-2013-0757 and CVE-2013-0758 to achieve remote code execution on Firefox 17.0.1 by leveraging Flash to navigate a frame to a chrome:// URL and bypassing the Chrome Object Wrapper.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Complex
Reliability
Reliable
Target: Firefox 17.0.1 with Flash installed
No auth needed
Prerequisites: Firefox 17.0.1 · Flash plugin installed · User interaction to visit malicious page
devstral-2 · analyzed Feb 19, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Marius Mlynski, joev, sinn3r · rubypocfirefox
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/browser/firefox_svg_plugin.rb

This Metasploit module exploits CVE-2013-0757 and CVE-2013-0758 to achieve remote code execution on Firefox 17.0.1 by leveraging Flash to navigate a frame to a chrome:// URL and bypassing the Chrome Object Wrapper.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Firefox 17.0.1 with Flash installed
No auth needed
Prerequisites: Firefox 17.0.1 · Flash plugin installed · User interaction to visit malicious page
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00006.html
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00010.html
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1681-4
Exploit, Issue Tracking, Patch, Vendor Advisory x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=813901
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00007.html
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1681-1
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00017.html
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-1681-2

Scores

EPSS 0.7457
EPSS Percentile 98.9%

Details

CWE
CWE-20
Status published
Products (17)
canonical/ubuntu_linux 10.04
canonical/ubuntu_linux 11.10
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 12.10
mozilla/firefox < 17.0.2
mozilla/seamonkey < 2.15
mozilla/thunderbird < 17.0.2
mozilla/thunderbird_esr < 17.0.2
opensuse/opensuse 11.4
opensuse/opensuse 12.1
... and 7 more
Published Jan 13, 2013
Tracked Since Feb 18, 2026