AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-5170

MEDIUM · CVSS 4.3 EPSS 1.76%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-5170
Severity
MEDIUM
CVSS
4.3
EPSS
1.76%

Original NVD Description

It is possible to spoof the filename of an attachment and display an arbitrary attachment name. This could lead to a user opening a remote attachment which is a different file type than expected. This vulnerability affects Thunderbird ESR < 52.8 and Thunderbird < 52.8.