CVE-2007-3845: Critical severity Microsoft Windows XP vulnerability
Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the file extension at the end of the URI," a variant of CVE-2007-4041. NOTE: the vendor states that "it is still possible to launch a filetype handler based on extension rather than the registered protocol handler."
Affected Software
Event History
Frequently Asked Questions
Which product versions are affected?
Systems running Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 or Thunderbird 2.x before 2.0.0.6, or SeaMonkey before 1.1.4 are affected.
What does an attacker need to exploit this?
The issue is remotely exploitable without authentication. An attacker uses vectors that cause the application to launch a file-handling program based on the extension at the end of a URI.
What is the potential impact of successful exploitation?
Successful exploitation can allow execution of arbitrary commands, with impacts to confidentiality, integrity, and availability.