PT-2003-2210 · Mozilla+1 · Mozilla Firefox+1
Published
2003-12-31
·
Updated
2008-09-05
·
CVE-2003-1265
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Netscape version 7.0
Mozilla version 5.0
Description
The issue allows local users to access deleted messages because they are not immediately deleted from the trash folder when the 'Empty Trash' option is selected.
Recommendations
For Netscape version 7.0, manually delete messages in the trash folder after selecting the 'Empty Trash' option to ensure they are removed.
For Mozilla version 5.0, consider regularly checking and manually deleting the contents of the trash folder to prevent access to deleted messages.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mozilla Firefox
Netscape