Summary
This host is installed with Mozilla Firefox and is prone to denial of service vulnerability.
Impact
Successful exploitation will allow attackers to terminate a user's session on a website, which will not allow the attacker to log back in to the website until after the browser has been restarted.
Impact Level: Application
Solution
No solution or patch was made available for at least one year since disclosure of this vulnerability. Likely none will be provided anymore.
General solution options are to upgrade to a newer release, disable respective features, remove the product or replace the product by another one.
Insight
Flaw is due to improper handling of the browser.cookie cookie header.
Affected
Mozilla Firefox version 19.0 on Mac OS X
Detection
Get the installed version with the help of detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2013-6167 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Apple Safari Multiple Memory Corruption Vulnerabilities-01 Aug14 (Mac OS X)
- Apache Tomcat Remote Code Execution Vulnerability - Sep14
- Asterisk SIP Response Username Enumeration Remote Information Disclosure Vulnerability
- Apple Safari 'Webkit' Multiple Vulnerabilities-01 Mar14 (Mac OS X)
- AOLserver Default Password