Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vrw2-q2cc-chx3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Updater in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, and Thunderbird ESR 17.x before 17.0.8 on Windows 7, Windows Server 2008 R2, Windows 8, and Windows Server 2012 allow local users to gain privileges via a Trojan horse DLL in (1) the update directory or (2) the current working directory.

Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Updater in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, and Thunderbird ESR 17.x before 17.0.8 on Windows 7, Windows Server 2008 R2, Windows 8, and Windows Server 2012 allow local users to gain privileges via a Trojan horse DLL in (1) the update directory or (2) the current working directory.

EPSS

Процентиль: 38%
0.00166
Низкий

Связанные уязвимости

nvd
больше 12 лет назад

Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Updater in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, and Thunderbird ESR 17.x before 17.0.8 on Windows 7, Windows Server 2008 R2, Windows 8, and Windows Server 2012 allow local users to gain privileges via a Trojan horse DLL in (1) the update directory or (2) the current working directory.

debian
больше 12 лет назад

Multiple untrusted search path vulnerabilities in updater.exe in Mozil ...

suse-cvrf
больше 12 лет назад

Security update for Mozilla Firefox

suse-cvrf
больше 12 лет назад

Security update for Mozilla Firefox

EPSS

Процентиль: 38%
0.00166
Низкий