Mozilla < 0.9 Predictable Temporary File Name File Deletion

High Log Correlation Engine Plugin ID 801338

Synopsis

N/A

Description

The remote host is using a version of the Mozilla web browser that uses predictable temporary file names. A local attacker may use this flaw to delete arbitrary files on this host.

Solution

Upgrade to Mozilla 0.9 or higher.

Plugin Details

Severity: High

ID: 801338

File Name: 801338.prm

Family: Web Clients

Risk Information

Risk Factor: High

Temporal Vector: CVSS2#E:H/RL:U/RC:ND

Reference Information

BID: 3743