6.9
CVSSv2

CVE-2013-1672

Published: 16/05/2013 Updated: 19/09/2017
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Mozilla Maintenance Service in Mozilla Firefox prior to 21.0, Firefox ESR 17.x prior to 17.0.6, Thunderbird prior to 17.0.6, and Thunderbird ESR 17.x prior to 17.0.6 on Windows allows local users to bypass integrity verification and gain privileges via vectors involving junctions.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 20.0

mozilla firefox 19.0

mozilla firefox 19.0.1

mozilla firefox 19.0.2

mozilla firefox

mozilla firefox_esr 17.0.3

mozilla firefox_esr 17.0.2

mozilla firefox_esr 17.0.4

mozilla firefox_esr 17.0

mozilla firefox_esr 17.0.1

mozilla firefox_esr 17.0.5

mozilla thunderbird 17.0.3

mozilla thunderbird 17.0.2

mozilla thunderbird 17.0.1

mozilla thunderbird

mozilla thunderbird 17.0.4

mozilla thunderbird 17.0

mozilla thunderbird_esr 17.0.4

mozilla thunderbird_esr 17.0.3

mozilla thunderbird_esr 17.0.1

mozilla thunderbird_esr

mozilla thunderbird_esr 17.0.2

mozilla thunderbird_esr 17.0

Vendor Advisories

Mozilla Foundation Security Advisory 2013-44 Local privilege escalation through Mozilla Maintenance Service Announced May 14, 2013 Reporter Seb Patane Impact High Products Firefox, Firefox ESR, Thunderbird, Thunderbird ESR ...