Skip to content
appaloosa scout logo main rounded
N/A

CVE-2008-4067

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 on Linux allows remote attackers to read arbitrary files via a .. (dot dot) and URL-encoded / (slash) characters in a resource: URI.

EPSS 2.1% percentile 84.1%

Affected tracked apps

Vulnerable CPE configurations

Vendor Product Platform Versions CPE 2.3 URI
mozilla thunderbird Windows <2.0.0.17 cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
View on NVD ↗