Medium
CVSS 4.7
Overview
The Updater in Mozilla Firefox before 48.0 on Windows allows local users to write to arbitrary files via vectors involving the callback application-path parameter and a hard link.
The Updater in Mozilla Firefox before 48.0 on Windows allows local users to writ...
The Updater in Mozilla Firefox before 48.0 on Windows allows local users to write to arbitrary files via vectors involving the callback application-path parameter and a hard link.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: