Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements to type="file" during tab restoration, which allows user-assisted remote attackers to read arbitrary files on a client machine via a crafted INPUT element.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox 脚本nsSessionStore.js 信息泄露漏洞
Vulnerability Description
Firefox是Mozilla所发布的开放源码WEB浏览器。 Mozilla Firefox(3.0.6之间3.x版本)脚本components/sessionstore/src/nsSessionStore.js 存在信息泄露漏洞,在恢复关闭标签页时的错误可能导致修改输入控件的文本值,当用户重新打开标签页时这可能允许泄露本地文件的内容。
CVSS Information
N/A
Vulnerability Type
N/A