VULNERABILITY INTELLIGENCE

CVE-2012-4192

CVSS score4.3 MEDIUM
EPSS probability1.41%
CISA KEVNot currently listed
Published2012-10-12
Last modified2026-06-16
CVSS vectorAV:N/AC:M/Au:N/C:P/I:N/A:N

Description

Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonkey 2.13 allow remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site, a related issue to CVE-2012-4193.

Primary references