AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2017-5393

MEDIUM · CVSS 6.1 EPSS 0.90%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-11 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2017-5393
Severity
MEDIUM
CVSS
6.1
EPSS
0.90%
Firefox

Original Filing — NVD Description

The "mozAddonManager" allows for the installation of extensions from the CDN for addons.mozilla.org, a publicly accessible site. This could allow malicious extensions to install additional extensions from the CDN in combination with an XSS attack on Mozilla AMO sites. This vulnerability affects Firefox < 51.