AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-0418

MEDIUM · CVSS 4.3 EPSS 8.63%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-02-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2008-0418
Severity
MEDIUM
CVSS
4.3
EPSS
8.63%
Chrome Firefox Java

Original NVD Description

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8, when using "flat" addons, allows remote attackers to read arbitrary Javascript, image, and stylesheet files via the chrome: URI scheme, as demonstrated by stealing session information from sessionstore.js.