Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to bypass "restrictions imposed on local HTML files," and obtain sensitive information and prompt users to write this information into a file, via directory traversal sequences in a resource: URI.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2008-09-24T18:00:00
Updated: 2024-08-07T10:00:42.853Z
Reserved: 2008-09-12T00:00:00
Link: CVE-2008-4068
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-09-24T20:37:04.767
Modified: 2024-11-21T00:50:48.947
Link: CVE-2008-4068
Redhat