Privilege Escalation via Content-Injection Bug in Firefox < 51

Privilege Escalation via Content-Injection Bug in Firefox < 51

CVE-2017-5391 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Special "about:" pages used by web content, such as RSS feeds, can load privileged "about:" pages in an iframe. If a content-injection bug were found in one of those pages this could allow for potential privilege escalation. This vulnerability affects Firefox < 51.

Learn more about our Web App Pen Testing.