bugzilla.mozilla.orgConfirmation
http://bugzilla.mozilla.org/show_bug.cgi?id=389580 CVE-2007-3845
Multiple Browsers - URI Handlers Command Injection
Record summary
CVE-2007-3845 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the file extension at the end of the URI," a variant of CVE-2007-4041. NOTE: the vendor states that "it is still possible to launch a filetype handler based on extension rather than the registered protocol handler."
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMultiple Browsers - URI Handlers Command InjectionExploitDB exploitby Billy RiosNot analyzed1 file
References
Showing 12 of 35HPSBUX02153Vendor advisory
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742 HPSBUX02156Vendor advisory
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00774579 26234Third-party advisory
http://secunia.com/advisories/26234 26258Third-party advisory
http://secunia.com/advisories/26258 26303Third-party advisory
http://secunia.com/advisories/26303 26309Third-party advisory
http://secunia.com/advisories/26309 26331Third-party advisory
http://secunia.com/advisories/26331 26335Third-party advisory
http://secunia.com/advisories/26335 26393Third-party advisory
http://secunia.com/advisories/26393 26572Third-party advisory
http://secunia.com/advisories/26572 27326Third-party advisory
http://secunia.com/advisories/27326