#VU10981 Security restrictions bypass in Mozilla Firefox - CVE-2018-5137
Published: March 13, 2018
Mozilla Firefox
Mozilla
Description
The vulnerability allows a remote attacker to bypass security restrictions on the target system.
The vulnerability exists due to insufficient sanitization of user-supplied data. A remote attacker can use a maliciously crafted path string to reference the resource and load a legacy extension's non-contentaccessible, defined resources by an arbitrary web page through script.