Files
CVEs-PoC/2016/CVE-2016-5294.md
2025-09-29 21:09:30 +02:00

1.0 KiB

CVE-2016-5294

Description

The Mozilla Updater can be made to choose an arbitrary target working directory for output files resulting from the update process. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

POC

Reference

Github

No PoCs found on GitHub currently.