5
CVSSv2

CVE-2008-5505

Published: 17/12/2008 Updated: 03/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Mozilla Firefox 3.x prior to 3.0.5 allows remote malicious users to bypass intended privacy restrictions by using the persist attribute in an XUL element to create and access data entities that are similar to cookies.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

mozilla firefox 3.0

mozilla firefox 3.0.1

mozilla firefox 3.0.2

mozilla firefox 3.0.3

Vendor Advisories

Synopsis Critical: firefox security update Type/Severity Security Advisory: Critical Topic An updated firefox package that fixes various security issues is nowavailable for Red Hat Enterprise Linux 4 and 5This update has been rated as having critical security impact by the RedHat Security Response Team ...
Several flaws were discovered in the browser engine These problems could allow an attacker to crash the browser and possibly execute arbitrary code with user privileges (CVE-2008-5500, CVE-2008-5501, CVE-2008-5502) ...
Mozilla Foundation Security Advisory 2008-63 User tracking via XUL persist attribute Announced December 16, 2008 Reporter Hish Impact Low Products Firefox Fixed in Firefox 305 ...