Summary
This host is installed with Mozilla Firefox and is prone to denial of service vulnerability.
Impact
Successful exploitation will allow attackers to terminate a user's session on a website, which will not allow the attacker to log back in to the website until after the browser has been restarted.
Impact Level: Application
Solution
No solution or patch was made available for at least one year since disclosure of this vulnerability. Likely none will be provided anymore.
General solution options are to upgrade to a newer release, disable respective features, remove the product or replace the product by another one.
Insight
Flaw is due to improper handling of the browser.cookie cookie header.
Affected
Mozilla Firefox version 19.0 on Windows
Detection
Get the installed version with the help of detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2013-6167 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Apple Safari Webkit Multiple Vulnerabilities - May13 (Mac OS X)
- Apple Safari libxml Denial of Service Vulnerability
- Adobe Products Unspecified Cross-Site Scripting Vulnerability June-2011 (Windows)
- Arora Common Name SSL Certificate Spoofing Vulnerability (Linux)
- Apple iTunes Tutorials Window Security Bypass Vulnerability (Windows)