Логотип exploitDog
bind:CVE-2017-7761
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-7761

Количество 7

Количество 7

ubuntu логотип

CVE-2017-7761

больше 7 лет назад

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2017-7761

больше 7 лет назад

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2017-7761

больше 7 лет назад

The Mozilla Maintenance Service "helper.exe" application creates a tem ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-mcm9-29wj-77v9

больше 3 лет назад

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:1620-1

больше 8 лет назад

Security update for Mozilla based packages

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:1669-1

больше 8 лет назад

Security update for MozillaFirefox, MozillaFirefox-branding-SLE

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2235-1

больше 8 лет назад

Security update for MozillaFirefox, MozillaFirefox-branding-SLED, firefox-gcc5, mozilla-nss

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-7761

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-7761

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2017-7761

The Mozilla Maintenance Service "helper.exe" application creates a tem ...

CVSS3: 5.5
0%
Низкий
больше 7 лет назад
github логотип
GHSA-mcm9-29wj-77v9

The Mozilla Maintenance Service "helper.exe" application creates a temporary directory writable by non-privileged users. When this is combined with creation of a junction (a form of symbolic link), protected files in the target directory of the junction can be deleted by the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 52.2 and Firefox < 54.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2017:1620-1

Security update for Mozilla based packages

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:1669-1

Security update for MozillaFirefox, MozillaFirefox-branding-SLE

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2235-1

Security update for MozillaFirefox, MozillaFirefox-branding-SLED, firefox-gcc5, mozilla-nss

больше 8 лет назад

Уязвимостей на страницу