CVE-2012-4206: Medium severity firefox vulnerability
Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 on Windows allows local users to gain privileges via a Trojan horse DLL in the default downloads directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4206?
CVE-2012-4206 is classified as a moderate severity vulnerability that allows local users to exploit untrusted search paths.
How do I fix CVE-2012-4206?
To fix CVE-2012-4206, upgrade Mozilla Firefox to version 17.0 or later, or Firefox ESR to version 10.0.11 or later.
What impact does CVE-2012-4206 have on users?
CVE-2012-4206 allows attackers to gain elevated privileges via a Trojan horse DLL in the default downloads directory.
Which versions of Mozilla Firefox are affected by CVE-2012-4206?
CVE-2012-4206 affects Mozilla Firefox versions prior to 17.0 and Firefox ESR 10.x before 10.0.11.
Is CVE-2012-4206 present in all Windows versions of Firefox?
CVE-2012-4206 is specifically a vulnerability in Windows versions of Mozilla Firefox prior to version 17.0.