vendor:
Firefox
by:
5.5
CVSS
MEDIUM
Image Handling Vulnerabilities
200
CWE
Product Name: Firefox
Affected Version From: Mozilla Firefox 0.10.1 and prior versions
Affected Version To: Mozilla Firefox 0.10.1
Patch Exists: NO
Related CWE: CVE-2004-0750
CPE: a:mozilla:firefox:0.10.1
Platforms Tested: Windows
2004
Multiple Vulnerabilities in Image Handling Functionality in Browsers
The vulnerabilities in the image handling functionality through the <IMG> tag can allow remote attackers to determine the existence of local files, cause a denial of service condition, and disclose passwords for Windows systems via file shares.
Mitigation:
Users are advised to update to the latest version of the affected browsers.