CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 9.3. It affects Firefox.
CVE
CVE-2014-1507
Severity
HIGH
CVSS
9.3
EPSS
1.10%
Firefox
Original NVD Description
Directory traversal vulnerability in the DeviceStorage API in Mozilla FirefoxOS before 1.2.2 allows attackers to bypass the media sandbox protection mechanism, and read or modify arbitrary files, via a crafted application that uses a relative pathname for a DeviceStorageFile object.