Short Name |
HTTP:STC:MOZILLA:FF2-DIR-TRAV |
---|---|
Severity |
Medium |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Mozilla Firefox 2.0.0.4 Directory Traversal |
Release Date |
2013/05/07 |
Update Number |
2260 |
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in the Mozilla Firefox. Firefox 2.0.0.4 and prior versions are vulnerable. It is due to insufficient validation of user supplied input. A successful attack can allow the attackers to read the content of arbitrary files on the target host.
Directory traversal vulnerability in Mozilla Firefox 2.0.0.4 and earlier on Mac OS X and Unix allows remote attackers to read arbitrary files via ..%2F (dot dot encoded slash) sequences in a resource:// URI.