CVE-2015-4494: Mozilla Firefox OS

Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.

Mozilla Firefox OS before 2.2 does not require the wifi-manage privilege for reading a Wi-Fi system message, which allows attackers to obtain potentially sensitive information via a crafted app.

Affected products

  • Mozilla Firefox OS: up to and including 2.1.0

Published 2015-08-08. Last modified 2026-06-17.