Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r75w-mj28-6x5x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

When Python was installed on Windows, a python file being served with the MIME type of text/plain could be executed by Python instead of being opened as a text file when the Open option was selected upon download. Note: this issue only occurs on Windows. Other operating systems are unaffected.. This vulnerability affects Firefox < 72.

When Python was installed on Windows, a python file being served with the MIME type of text/plain could be executed by Python instead of being opened as a text file when the Open option was selected upon download. Note: this issue only occurs on Windows. Other operating systems are unaffected.. This vulnerability affects Firefox < 72.

EPSS

Процентиль: 65%
0.00479
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

When Python was installed on Windows, a python file being served with the MIME type of text/plain could be executed by Python instead of being opened as a text file when the Open option was selected upon download. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 72.

CVSS3: 8.8
nvd
около 6 лет назад

When Python was installed on Windows, a python file being served with the MIME type of text/plain could be executed by Python instead of being opened as a text file when the Open option was selected upon download. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 72.

CVSS3: 8.8
debian
около 6 лет назад

When Python was installed on Windows, a python file being served with ...

CVSS3: 8.8
fstec
около 6 лет назад

Уязвимость браузера Mozilla Firefox для Windows, связанная с ошибками при обработке входных данных, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 65%
0.00479
Низкий

Дефекты

CWE-20