CVE-2015-7192 describes a denial-of-service vulnerability, potentially leading to arbitrary code execution, in Mozilla Firefox versions prior to 42.0 on OS X. This flaw arises from improper interaction between the accessibility-tools feature and the TABLE element, allowing remote attackers to trigger a crash by manipulating row indices. Rated with a CVSS score of 7.5, it is a network-exploitable vulnerability with low attack complexity, posing risks to confidentiality, integrity, and availability. While no public exploit code or active exploitation has been observed, and community discussion is minimal, the vulnerability affects Apple Firefox and Mozilla Firefox on Mac OS X.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 41.0.2CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.