CVE-2023-28163: Path Traversal
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. <br>This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
Other sources
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.
— Mozilla
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. This bug only affects Thunderbird on Windows. Other versions of Thunderbird are unaffected.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-28163?
CVE-2023-28163 is a vulnerability that affects Firefox on Windows when downloading files through the Save As dialog.
Which software versions are affected by CVE-2023-28163?
Firefox versions up to exclusive version 111, Firefox ESR versions up to exclusive version 102.9, and Thunderbird up to exclusive version 102.9 are affected by CVE-2023-28163.
What is the severity of CVE-2023-28163?
CVE-2023-28163 has a medium severity rating with a CVSS score of 4.
How does CVE-2023-28163 impact Firefox on Windows?
CVE-2023-28163 allows environment variable names in suggested filenames to be resolved in the context of the current user, potentially leading to information disclosure.
How can I fix CVE-2023-28163?
To fix CVE-2023-28163, update your Firefox, Firefox ESR, or Thunderbird software to the latest version available.