CVE-2022-45415

CVSS v3.1 7.8 (High)
78% Progress
EPSS 0.07 % (31th)
0.07% Progress
Affected Products 1
Advisories 3

When downloading an HTML file, if the title of the page was formatted as a filename with a malicious extension, Firefox may have saved the file with that extension, leading to possible system compromise if the downloaded file was later ran. This vulnerability affects Firefox < 107.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2022-12-22 20:15:44
(21 months ago)
Updated Date
2022-12-30 22:13:21
(20 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 107.0 version cpe:2.3:a:mozilla:firefox < 107.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...