AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-0867

HIGH · CVSS 7.5 EPSS 17.18%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-12-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-0867
Severity
HIGH
CVSS
7.5
EPSS
17.18%
Firefox

Original NVD Description

Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected.