CVE-2008-2810
published 2008-07-07CVE-2008-2810: Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote…
PriorityP420medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.10%
62.0th percentile
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site for which the user has previously saved a shortcut.
Affected
51 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| mozilla | firefox | <= 2.0.0.14 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_ubuntu10.0CRITICAL
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Mozilla same origin policy bypass
vendor_redhat·2008-10-08·CVSS 6.8
CVE-2008-4582 [MEDIUM] Mozilla same origin policy bypass
Mozilla same origin policy bypass
Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13, when running on Windows, do not properly identify the context of Windows .url shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information via an HTML document that is directly accessible through a filesystem, as demonstrated by documents in (1) local folders, (2) Windows share folders, and (3) RAR archives, and as demonstrated by IFRAMEs referencing shortcuts that point to (a) about:cache?device=memory and (b) about:cache?device=disk, a variant of CVE-2008-2810.
Red Hat
Firefox arbitrary file disclosure
vendor_redhat·2008-07-02·CVSS 6.8
CVE-2008-2810 [MEDIUM] Firefox arbitrary file disclosure
Firefox arbitrary file disclosure
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site for which the user has previously saved a shortcut.
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2008-07-02·CVSS 10.0
CVE-2008-2798 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox vulnerabilities
Various flaws were discovered in the browser engine. By tricking
a user into opening a malicious web page, an attacker could cause
a denial of service via application crash, or possibly execute
arbitrary code with the privileges of the user invoking the
program. (CVE-2008-2798, CVE-2008-2799)
Several problems were discovered in the JavaScript engine. If a
user were tricked into opening a malicious web page, an attacker
could perform cross-site scripting attacks. (CVE-2008-2800)
Collin Jackson discovered various flaws in the JavaScript engine
which allowed JavaScript to be injected into signed JAR files. If
a user were tricked into opening malicious web content, an
attacker may be able to execute arbitrary code with the pri
GHSA
GHSA-6m7x-v5gc-rvvh: Mozilla Firefox 3
ghsa_unreviewed·2022-05-02·CVSS 6.8
CVE-2008-4582 [MEDIUM] GHSA-6m7x-v5gc-rvvh: Mozilla Firefox 3
Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13, when running on Windows, do not properly identify the context of Windows .url shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information via an HTML document that is directly accessible through a filesystem, as demonstrated by documents in (1) local folders, (2) Windows share folders, and (3) RAR archives, and as demonstrated by IFRAMEs referencing shortcuts that point to (a) about:cache?device=memory and (b) about:cache?device=disk, a variant of CVE-2008-2810.
GHSA
GHSA-fv8w-wmhg-965x: Mozilla Firefox before 2
ghsa_unreviewed·2022-05-01
CVE-2008-2810 [MEDIUM] GHSA-fv8w-wmhg-965x: Mozilla Firefox before 2
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site for which the user has previously saved a shortcut.
No detection rules found.
Exploit-DB
HP iMC Plat 7.2 - Remote Code Execution
exploitdb·2017-11-28·CVSS 9.8
CVE-2017-5817 [CRITICAL] HP iMC Plat 7.2 - Remote Code Execution
HP iMC Plat 7.2 - Remote Code Execution
---
#!/opt/local/bin/python2.7
# Exploit Title: HP iMC Plat 7.2 dbman Opcode 10007 Command Injection RCE
# Date: 11-28-2017
# Exploit Author: Chris Lyne (@lynerc)
# Vendor Homepage: www.hpe.com
# Software Link: https://h10145.www1.hpe.com/Downloads/DownloadSoftware.aspx?SoftwareReleaseUId=16759&ProductNumber=JG747AAE&lang=en&cc=us&prodSeriesId=4176535&SaidNumber=
# Version: iMC PLAT v7.2 (E0403) Standard
# Tested on: Windows Server 2008 R2 Enterprise 64-bit
# CVE : CVE-2017-5817
# See Also: http://www.zerodayinitiative.com/advisories/ZDI-17-341/
# note that this PoC will create a file 'C:\poc.txt'
import socket, sys
ip = '192.168.1.74'
port = 2810
command = "echo PoC 12345 > C:\\poc.txt" # command to run
sock = socket.socket(socket.AF_INET, s
Exploit-DB
Joomla! Component ChronoForms 2.3.5 - Remote File Inclusion
exploitdb·2008-01-30
CVE-2008-0567 Joomla! Component ChronoForms 2.3.5 - Remote File Inclusion
Joomla! Component ChronoForms 2.3.5 - Remote File Inclusion
---
+______________________________________________By Crackers_Child___________________________________________+
*
*
* [~] Script.......: CHRONOFORMS version V2.3.5
* [~] Down.........: http://www.joomlaos.de/option,com_remository/Itemid,41/func,startdown/id,2810.html
* [~] Author.......: Crackers_Child | [email protected] & [email protected]
* [~] Class........: Remote File İnclude Vulnerability
* [~] Dork.........: inurl:/com_chronocontact
* [~] ForFix.........: For Fix Your Script Download http://www.chronoengine.com/component/option,com_docman/task,cat_view/gid,27/ 2.3.7 Version
+_______________________________________________________________________________________________________________________+
+_______
Bugzilla
CVE-2008-4582 Mozilla same origin policy bypass
bugzilla·2008-11-10·CVSS 6.8
CVE-2008-4582 [MEDIUM] CVE-2008-4582 Mozilla same origin policy bypass
CVE-2008-4582 Mozilla same origin policy bypass
Mozilla Firefox 3.0.1 through 3.0.3 on Windows does not properly identify the context of Windows .url shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information via an HTML document that is directly accessible through a filesystem, as demonstrated by documents in (1) local folders, (2) Windows share folders, and (3) RAR archives, and as demonstrated by IFRAMEs referencing shortcuts that point to (a) about:cache?device=memory and (b) about:cache?device=disk, a variant of CVE-2008-2810.
http://www.securityfocus.com/archive/1/archive/1/497091/100/0/threaded
http://liudieyu0.blog124.fc2.com/blog-entry-6.html
http://www.securityfocus.com/bid/31747
http://www.frsirt.com/english/ad
Bugzilla
CVE-2008-2810 Firefox arbitrary file disclosure
bugzilla·2008-06-24·CVSS 6.8
CVE-2008-2810 [MEDIUM] CVE-2008-2810 Firefox arbitrary file disclosure
CVE-2008-2810 Firefox arbitrary file disclosure
Mozilla community member Geoff reported a vulnerability in the way Mozilla opens
URL files sent directly to the browser. He demonstrated that such files were
opened with local file privileges, giving the remote content access to read from
the local filesystem. If a user opened a bookmark to a malicious page in this
manner, the page could potentially read from other local files on the user's
computer.
Discussion:
This will be MFSA 2008-32
---
This is now public:
http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.15
---
devhelp-0.16.1-8.fc8, gtkmozembedmm-1.4.2.cvs20060817-21.fc8, yelp-2.20.0-10.fc8, gnome-web-photo-0.3-11.fc8, kazehakase-0.5.4-2.fc8.2, blam-1.8.3-16.fc8, epiphany-2.20.3-5.fc8, liferea-1.4.1
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00004.htmlhttp://rhn.redhat.com/errata/RHSA-2008-0616.htmlhttp://secunia.com/advisories/30878http://secunia.com/advisories/30898http://secunia.com/advisories/30903http://secunia.com/advisories/30911http://secunia.com/advisories/30949http://secunia.com/advisories/31005http://secunia.com/advisories/31008http://secunia.com/advisories/31021http://secunia.com/advisories/31023http://secunia.com/advisories/31076http://secunia.com/advisories/31195http://secunia.com/advisories/31377http://secunia.com/advisories/33433http://security.gentoo.org/glsa/glsa-200808-03.xmlhttp://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.383152http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.384911http://wiki.rpath.com/Advisories:rPSA-2008-0216http://www.debian.org/security/2009/dsa-1697http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.15http://www.mozilla.org/security/announce/2008/mfsa2008-32.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0547.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0549.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0569.htmlhttp://www.securityfocus.com/archive/1/494080/100/0/threadedhttp://www.securityfocus.com/bid/30038http://www.securitytracker.com/id?1020419http://www.ubuntu.com/usn/usn-619-1http://www.vupen.com/english/advisories/2008/1993/referenceshttps://bugzilla.mozilla.org/show_bug.cgi?id=410156https://issues.rpath.com/browse/RPL-2646https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9593https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00207.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-July/msg00288.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-July/msg00295.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-07/msg00004.htmlhttp://rhn.redhat.com/errata/RHSA-2008-0616.htmlhttp://secunia.com/advisories/30878http://secunia.com/advisories/30898http://secunia.com/advisories/30903http://secunia.com/advisories/30911http://secunia.com/advisories/30949http://secunia.com/advisories/31005http://secunia.com/advisories/31008http://secunia.com/advisories/31021http://secunia.com/advisories/31023http://secunia.com/advisories/31076http://secunia.com/advisories/31195http://secunia.com/advisories/31377http://secunia.com/advisories/33433http://security.gentoo.org/glsa/glsa-200808-03.xmlhttp://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.383152http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.384911http://wiki.rpath.com/Advisories:rPSA-2008-0216http://www.debian.org/security/2009/dsa-1697http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.15http://www.mozilla.org/security/announce/2008/mfsa2008-32.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0547.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0549.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0569.htmlhttp://www.securityfocus.com/archive/1/494080/100/0/threadedhttp://www.securityfocus.com/bid/30038http://www.securitytracker.com/id?1020419http://www.ubuntu.com/usn/usn-619-1http://www.vupen.com/english/advisories/2008/1993/referenceshttps://bugzilla.mozilla.org/show_bug.cgi?id=410156https://issues.rpath.com/browse/RPL-2646https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9593https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00207.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-July/msg00288.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-July/msg00295.html
2008-07-07
Published