Skip to content
appaloosa scout logo main rounded
N/A

CVE-2008-4068

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to bypass "restrictions imposed on local HTML files," and obtain sensitive information and prompt users to write this information into a file, via directory traversal sequences in a resource: URI.

EPSS 0.3% percentile 50.2%

Affected tracked apps

Vulnerable CPE configurations

Vendor Product Platform Versions CPE 2.3 URI
mozilla thunderbird Windows <2.0.0.17 cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
View on NVD ↗