CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Firefox. It may be remotely exploitable.
CVE
CVE-2008-4066
Severity
MEDIUM
CVSS
4.3
EPSS
1.76%
Firefox
Original NVD Description
Mozilla Firefox 2.0.0.14, and other versions before 2.0.0.17, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via HTML-escaped low surrogate characters that are ignored by the HTML parser, as demonstrated by a "jav�ascript" sequence, aka "HTML escaped low surrogates bug."