Vulnerabilities > CVE-2022-38475 - Incorrect Authorization vulnerability in Mozilla Firefox

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
mozilla
CWE-863

Summary

An attacker could have written a value to the first element in a zero-length JavaScript array. Although the array was zero-length, the value was not written to an invalid memory address. This vulnerability affects Firefox < 104.

Vulnerable Configurations

Part Description Count
Application
Mozilla
852

Common Weakness Enumeration (CWE)