CVE-2022-34482

CVSS v3.1 8.8 (High)
88% Progress
EPSS 0.19 % (56th)
0.19% Progress
Affected Products 1
Advisories 7

An attacker who could have convinced a user to drag and drop an image to a filesystem could have manipulated the resulting filename to contain an executable extension, and by extension potentially tricked the user into executing malicious code. While very similar, this is a separate issue from CVE-2022-34483. This vulnerability affects Firefox < 102.

Weaknesses
CWE-NVD-noinfo
Related CVEs
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:33
(21 months ago)
Updated Date
2022-12-30 18:18:07
(20 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 102.0 version cpe:2.3:a:mozilla:firefox < 102.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...