Short Name |
HTTP:STC:MOZILLA:URLBAR-RCE |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Mozilla Firefox URLBar Null Byte File Remote Code Execution |
Release Date |
2014/09/14 |
Update Number |
2419 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability against Mozilla Firefox URLBar. A successful attack can lead to memory corruption and arbitrary code execution.
Mozilla Firefox is prone to a remote code-execution vulnerability because it fails to adequately sanitize user-supplied input. Attackers may exploit this issue by enticing victims into visiting a malicious site and followings links with improper file extensions. Successful exploits may allow an attacker to crash the application or execute arbitrary code in the context of the affected application. Other attacks are also possible.