A Vulnerability in Mozilla Firefox Could Allow for Arbitrary Code Execution
ID: 5080e705-b04c-59bb-99bc-8deeaa1df3b7
STIX ID: report--5080e705-b04c-59bb-99bc-8deeaa1df3b7
Feed Name: CISecurity.org Advisories
Threat Score
A use-after-free vulnerability in Mozilla Firefox's Animation timelines (CVE-2024-9680) enables arbitrary code execution in the content process via drive-by compromise (Initial Access: T1189). The vendor reports that this flaw has been observed exploited in the wild and successful exploitation could allow attackers to install programs, view/modify/delete data, or create accounts depending on victim privileges.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
