CVE-2011-4688 describes a vulnerability in Mozilla Firefox versions 8.0.1 and earlier, where crafted JavaScript could exploit a weakness in how IFRAME loading attempts handle Same Origin Policy violations. This allowed remote attackers to infer the presence of documents in the browser cache. The vulnerability has a CVSS score of 5.0, indicating a medium severity, with a low attack complexity and potential for information disclosure (C:P). There is no evidence of active exploitation, no known exploit code in Metasploit or ExploitDB, and minimal community discussion or media coverage, suggesting it is not a widely targeted or discussed vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 8.0.1CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
8.0CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:8.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.