header-logo
Suggest Exploit
vendor:
Browser/Firefox
by:
SecurityFocus
7.5
CVSS
HIGH
Arbitrary Command-Execution
78
CWE
Product Name: Browser/Firefox
Affected Version From: 1.0.6
Affected Version To: 1.7.x
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: UNIX-based
2005

Mozilla Browser/Firefox Arbitrary Command-Execution Vulnerability

Mozilla Browser/Firefox are affected by an arbitrary command-execution vulnerability. This attack would occur in the context of the user running the vulnerable application and may facilitate unauthorized remote access. Mozilla Firefox 1.0.6 running on UNIX-based platforms is reportedly vulnerable. Other versions and applications employing Firefox functionality may be vulnerable as well. Mozilla Browser 1.7.x versions and Thunderbird 1.x versions are also vulnerable to this issue.

Mitigation:

Ensure that all Mozilla Browser/Firefox applications are kept up to date with the latest security patches.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/14888/info

Mozilla Browser/Firefox are affected by an arbitrary command-execution vulnerability.

This attack would occur in the context of the user running the vulnerable application and may facilitate unauthorized remote access.

Mozilla Firefox 1.0.6 running on UNIX-based platforms is reportedly vulnerable. Other versions and applications employing Firefox functionality may be vulnerable as well.

Mozilla Browser 1.7.x versions and Thunderbird 1.x versions are also vulnerable to this issue. 

http://local\`find\`host