Back to search
CVE-2023-25740
Published: Jun 2, 2023
Modified: Jan 9, 2025
PUBLISHED
Description
After downloading a Windows <code>.scf</code> script from the local filesystem, an attacker could supply a remote path that would lead to unexpected network requests from the operating system. This also had the potential to leak NTLM credentials to the resource.<br>*This bug only affects Firefox for Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 110.
| Vendor | Product | Versions |
|---|---|---|
Mozilla | Firefox | affected unspecified - < 110 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now