Mozilla Firefox CVE-2016-2809 Weak Authentication Vulnerability

description-logoDescription

Security researcher Holger Fuhrmannek reported an issue where the Mozilla Maintenance Service updater on Windows can delete arbitrary files because of its privileged system access. This file deletion can then potentially be used for further privilege escalation. This flaw requires users to execute a locally saved file in order for it to be triggered.

affected-products-logoAffected Applications

Firefox

CVE References

CVE-2016-2809