Vulnerability Database

323,117

Total vulnerabilities in the database

CVE-2013-1727

Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file.

  • Published: Sep 18, 2013
  • Updated: Nov 9, 2025
  • CVE: CVE-2013-1727
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4
  • AV:N/AC:H/Au:N/C:P/I:P/A:N