Record summary

CVE-2013-1727 has a selected CVSS score of 4.0; EIP currently links 1 catalogued exploit.

Description

Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMozilla Firefox 9.0.1 - Same Origin Policy Security BypassExploitDB exploitby Takeshi TeradaNot analyzed1 file
ExploitDB

PoC details

References

6