PT-2006-3546 · Mozilla+1 · Firefox+2
Martin Hassman
+1
·
Published
2006-05-26
·
Updated
2018-10-18
·
CVE-2006-2613
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Mozilla Suite versions prior to 1.8.0
Mozilla Firefox versions prior to 1.8.0
Netscape versions 7.2 and 8.1, and possibly other versions
Description
The issue allows remote user-assisted attackers to obtain sensitive information, such as the installation path, by causing exceptions to be thrown and checking the message contents.
Recommendations
For Mozilla Suite versions prior to 1.8.0, update to version 1.8.0 or later to resolve the issue.
For Mozilla Firefox versions prior to 1.8.0, update to version 1.8.0 or later to resolve the issue.
For Netscape versions 7.2 and 8.1, and possibly other versions, consider restricting access to sensitive information until a fix is available.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Suite
Netscape