Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-75350
HistoryJun 30, 2022 - 12:00 a.m.

Mozilla Firefox Remote Code Execution Vulnerability

2022-06-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

7.8 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

55.4%

Mozilla Firefox is an open source web browser from the Mozilla Foundation in the United States. A remote code execution vulnerability exists in Mozilla Firefox due to a lack of restriction and filtering of extensions in the drag-and-drop image feature. The vulnerability can be exploited to execute malicious code by dragging and dropping a malicious image onto the file system.

CPENameOperatorVersion
mozilla firefoxlt102.0