#VU59380 Unquoted Search Path or Element in Mozilla Firefox - CVE-2022-22736
Published: January 11, 2022
Mozilla Firefox
Mozilla
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to unquoted search path in Firefox installer. A local user with ability to write files into the Firefox installation folder can place a specially crafted library and execute arbitrary code on the system.
The vulnerability affects Firefox for Windows in a non-default installation.