vulnerability
MFSA2018-13 Thunderbird: Security vulnerabilities fixed in Thunderbird 52.8 (CVE-2018-5170)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | May 18, 2018 | May 22, 2018 | Aug 12, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
May 18, 2018
Added
May 22, 2018
Modified
Aug 12, 2025
Description
It is possible to spoof the filename of an attachment and display an arbitrary attachment name. This could lead to a user opening a remote attachment which is a different file type than expected. This vulnerability affects Thunderbird ESR < 52.8 and Thunderbird < 52.8.
Solution
mozilla-thunderbird-upgrade-52_8
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.