vendor:
Mozilla Internet Browser
by:
Unknown
5.5
CVSS
MEDIUM
External Protocol Handling
20
CWE
Product Name: Mozilla Internet Browser
Affected Version From: All versions of Mozilla Internet Browser
Affected Version To:
Patch Exists: YES
Related CWE: CVE-2004-0724
CPE: a:mozilla:mozilla
Platforms Tested: Windows, Linux, Mac
2004
Mozilla Internet Browser External Protocol Handling Weakness
Mozilla Internet Browser is prone to a weakness that allows an external protocol to be called without user interaction, potentially exposing users to vulnerabilities in the underlying operating system or default handler for the registered protocol. This weakness can be exploited to execute arbitrary files.
Mitigation:
Users are advised to be cautious when opening files or clicking on links from untrusted sources.