AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-1215

MEDIUM · CVSS 6.8 EPSS 1.49%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-07-30 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2010-1215
Severity
MEDIUM
CVSS
6.8
EPSS
1.49%
Chrome Firefox Java

Original NVD Description

Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 do not properly implement access to a content object through a SafeJSObjectWrapper (aka SJOW) wrapper, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by leveraging "access to an object from the chrome scope."