← Back

CVE-2013-1715

nvd nist
Published: Aug 7, 2013Modified: Apr 29, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

Multiple untrusted search path vulnerabilities in the (1) full installer and (2) stub installer in Mozilla Firefox before 23.0 on Windows allow local users to gain privileges via a Trojan horse DLL in the default downloads directory. NOTE: this issue exists because of an incomplete fix for CVE-2012-4206.

Affected (7)

Products: Mozilla: Firefox
1 product
Firefox
Configuration A
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Mozilla
Up to 22.0
Version 19.0.1
Version 19.0.2
Version 19.0
Version 20.0.1
Version 20.0
Version 21.0
Running on/withPlatform Versions
Microsoft
Windows
All versions

Timeline

No history available yet.