Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows uses the Content-Type HTTP header to determine the file type, but saves the original file extension when "Save to Disk" is selected, which allows remote attackers to hide the real file types of downloaded files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox漏洞
Vulnerability Description
Mozilla Firefox 0.10.1及1.0 Windows版中的文件下载对话框使用Content-Type HTTP报头来测定文件类型,但是当选择了"保存到磁盘"时,系统保存源文件扩展名,远程攻击者可借此来隐藏已下载文件的真正的类型。
CVSS Information
N/A
Vulnerability Type
N/A