Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11607
HistoryJan 15, 2019 - 9:04 a.m.

Arbitrary File Read

2019-01-1509:04:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

EPSS

0.006

Percentile

78.3%

thunderbird is vulnerable to arbitrary file read attacks. The vulnerability exists as the Form Autocompletion feature in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to read arbitrary files via crafted JavaScript code.

References