7.8
CVSSv3

CVE-2022-45415

Published: 22/12/2022 Updated: 30/12/2022
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

When downloading an HTML file, if the title of the page was formatted as a filename with a malicious extension, Firefox may have saved the file with that extension, leading to possible system compromise if the downloaded file was later ran. This vulnerability affects Firefox < 107.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Several security issues were fixed in Firefox ...
Mozilla Foundation Security Advisory 2022-47 Security Vulnerabilities fixed in Firefox 107 Announced November 15, 2022 Impact high Products Firefox Fixed in Firefox 107 ...