CVE-2023-28163
published 2023-06-19CVE-2023-28163: Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the…
PriorityP429medium6.5CVSS 3.1
AVNACLPRNUIRSUCNIHAN
EPSS
0.80%
52.8th percentile
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user.
*This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| debian | firefox-esr | — | — |
| debian | thunderbird | — | — |
| mozilla | firefox | < 112.0 | 112.0 |
| mozilla | firefox | < 111.0 | 111.0 |
| mozilla | firefox | — | — |
| mozilla | firefox | >= unspecified < 112 | 112 |
| mozilla | firefox_esr | < 102.10 | 102.10 |
| mozilla | firefox_esr | < 102.9 | 102.9 |
| mozilla | firefox_esr | >= unspecified < 102.10 | 102.10 |
| mozilla | thunderbird | < 102.10 | 102.10 |
| mozilla | thunderbird | < 102.9 | 102.9 |
| mozilla | thunderbird | >= unspecified < 102.10 | 102.10 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
osv6.5MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Mozilla: Windows Save As dialog resolved environment variables
vendor_redhat·2023-04-11·CVSS 6.5
CVE-2023-29545 [MEDIUM] CWE-428 Mozilla: Windows Save As dialog resolved environment variables
Mozilla: Windows Save As dialog resolved environment variables
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user.
*This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
The Mozilla Foundation Security Advisory describes this flaw as:
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user.
*This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.*
S
Red Hat
Mozilla: Windows Save As dialog resolved environment variables
vendor_redhat·2023-03-14·CVSS 6.5
CVE-2023-28163 [MEDIUM] CWE-200 Mozilla: Windows Save As dialog resolved environment variables
Mozilla: Windows Save As dialog resolved environment variables
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. *This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue that when downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the current user's context. This bug only affects Firefox on Windows. Other versions of Firefox are unaffect
Debian
CVE-2023-28163: firefox - When downloading files through the Save As dialog on Windows with suggested file...
vendor_debian·2023·CVSS 6.5
CVE-2023-28163 [MEDIUM] CVE-2023-28163: firefox - When downloading files through the Save As dialog on Windows with suggested file...
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. *This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
Scope: local
sid: resolved
Debian
CVE-2023-29545: firefox - Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested fil...
vendor_debian·2023·CVSS 6.5
CVE-2023-29545 [MEDIUM] CVE-2023-29545: firefox - Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested fil...
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user. *This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
Scope: local
sid: resolved
Mozilla
Mozilla Foundation Security Advisory 2023-13: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-13: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-13
CVE: CVE-2023-28163
Product: Firefox, Firefox for Android, Focus for Android
Impact: high
Fixed in: Firefox 112
Firefox for Android 112
Focus for Android 112
Mozilla
Mozilla Foundation Security Advisory 2023-09: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-09: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-09
CVE: CVE-2023-28163
Product: Firefox
Impact: high
Fixed in: Firefox 111
Mozilla
Mozilla Foundation Security Advisory 2023-15: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-15: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-15
CVE: CVE-2023-28163
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 102.10
Mozilla
Mozilla Foundation Security Advisory 2023-14: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-14: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-14
CVE: CVE-2023-28163
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 102.10
Mozilla
Mozilla Foundation Security Advisory 2023-11: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-11: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-11
CVE: CVE-2023-28163
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 102.9
Mozilla
Mozilla Foundation Security Advisory 2023-10: CVE-2023-28163
vendor_mozilla·CVSS 6.5
CVE-2023-28163 [MEDIUM] Mozilla Foundation Security Advisory 2023-10: CVE-2023-28163
Mozilla Foundation Security Advisory 2023-10
CVE: CVE-2023-28163
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 102.9
GHSA
GHSA-xhrg-vc2x-xrcj: Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those
ghsa_unreviewed·2023-06-19·CVSS 6.5
CVE-2023-29545 [MEDIUM] GHSA-xhrg-vc2x-xrcj: Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user.
*This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
OSV
CVE-2023-29545: Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those
osv·2023-06-19·CVSS 6.5
CVE-2023-29545 [MEDIUM] CVE-2023-29545: Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those
Similar to CVE-2023-28163, this time when choosing 'Save Link As', suggested filenames containing environment variable names would have resolved those in the context of the current user. *This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
OSV
CVE-2023-28163: When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolv
osv·2023-06-02·CVSS 6.5
CVE-2023-28163 [MEDIUM] CVE-2023-28163: When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolv
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. *This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
GHSA
GHSA-xwh8-4fp4-mvqf: When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolv
ghsa_unreviewed·2023-06-02
CVE-2023-28163 [MEDIUM] CWE-22 GHSA-xwh8-4fp4-mvqf: When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolv
When downloading files through the Save As dialog on Windows with suggested filenames containing environment variable names, Windows would have resolved those in the context of the current user. *This bug only affects Firefox on Windows. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
No detection rules found.
No public exploits indexed.
https://bugzilla.mozilla.org/show_bug.cgi?id=1823077https://www.mozilla.org/security/advisories/mfsa2023-13/https://www.mozilla.org/security/advisories/mfsa2023-14/https://www.mozilla.org/security/advisories/mfsa2023-15/https://bugzilla.mozilla.org/show_bug.cgi?id=1823077https://www.mozilla.org/security/advisories/mfsa2023-13/https://www.mozilla.org/security/advisories/mfsa2023-14/https://www.mozilla.org/security/advisories/mfsa2023-15/
2023-06-19
Published