>> Mozilla Firefox Shortcut Handlingg Information Disclosure Vulnerability
Title : Mozilla Firefox Shortcut Handlingg Information Disclosure Vulnerability VUPEN ID : VUPEN/ADV-2008-2818 CVE ID : CVE-2008-4582 CWE ID : CWE-200
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-10-15
Technical Description
A vulnerability has been identified in Mozilla Firefox, which could be exploited by attackers to gain knowledge of sensitive information. This issue is caused by an error when handling internet shortcuts (.url) loaded by HTML pages, which could allow attackers to disclose certain information from the cache by tricking a user into opening a specially crafted file.