Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

fstec логотип

BDU:2022-05937

около 6 лет назад

Уязвимость службы Maintenance Service браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird для Windows, позволяющая нарушителю выполнить произвольный код с повышенными привилегиями

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2020-15663

почти 6 лет назад

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-15663

около 6 лет назад

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-15663

почти 6 лет назад

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-15663

почти 6 лет назад

If Firefox is installed to a user-writable directory, the Mozilla Main ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-fj34-jgxp-cv4f

больше 4 лет назад

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1392-1

почти 6 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1391-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1384-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1383-1

почти 6 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2563-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2552-1

почти 6 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2544-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14489-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2749-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2022-05937

Уязвимость службы Maintenance Service браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird для Windows, позволяющая нарушителю выполнить произвольный код с повышенными привилегиями

CVSS3: 8.8
3%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2020-15663

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
3%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-15663

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
3%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-15663

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
3%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-15663

If Firefox is installed to a user-writable directory, the Mozilla Main ...

CVSS3: 8.8
3%
Низкий
почти 6 лет назад
github логотип
GHSA-fj34-jgxp-cv4f

If Firefox is installed to a user-writable directory, the Mozilla Maintenance Service would execute updater.exe from the install location with system privileges. Although the Mozilla Maintenance Service does ensure that updater.exe is signed by Mozilla, the version could have been rolled back to a previous version which would have allowed exploitation of an older bug and arbitrary code execution with System Privileges. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 80, Thunderbird < 78.2, Thunderbird < 68.12, Firefox ESR < 68.12, and Firefox ESR < 78.2.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1392-1

Security update for MozillaThunderbird

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1391-1

Security update for MozillaFirefox

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1384-1

Security update for MozillaFirefox

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1383-1

Security update for MozillaThunderbird

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:2563-1

Security update for MozillaFirefox

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:2552-1

Security update for MozillaThunderbird

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:2544-1

Security update for MozillaFirefox

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:14489-1

Security update for MozillaFirefox

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:2749-1

Security update for MozillaFirefox

почти 6 лет назад

Уязвимостей на страницу