Mozilla Firefox before 36.0.4, Firefox ESR 31.x before 31.5.3, and SeaMonkey before 2.33.1 allow remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code with chrome privileges via vectors involving SVG hash navigation.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 22 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox:31.5.1:*:*:*:*:*:*:* | 
Mon, 21 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox_esr:31.1.0:*:*:*:*:*:*:* | cpe:2.3:a:mozilla:firefox:31.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:31.1.0:*:*:*:*:*:*:* | 
Mon, 21 Oct 2024 13:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox_esr:31.3.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:31.5.2:*:*:*:*:*:*:* | cpe:2.3:a:mozilla:firefox:31.1.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:31.3.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:31.5.2:*:*:*:*:*:*:* | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mozilla
Published: 2015-03-24T00:00:00
Updated: 2024-08-06T04:26:11.047Z
Reserved: 2015-01-07T00:00:00
Link: CVE-2015-0818
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Deferred
Published: 2015-03-24T00:59:07.250
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-0818
 Redhat
                        Redhat