Back

MEDIUM

Mozilla: IE protocols can be used to open known local files

Published Jul 23, 2019

Description

A hyperlink using protocols associated with Internet Explorer, such as IE.HTTP:, can be used to open local files at a known location with Internet Explorer if a user approves execution when prompted. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 67.0.2.

Affected products

Remediation

Red Hat statement

This vulnerability only affects versions of Firefox on the Windows operating system. Red Hat Enterprise Linux is not affected.

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mozilla
Published Jul 23, 2019
Updated Aug 4, 2024
Reserved May 3, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Jun 11, 2019