Field Assessment
AI analysis pending.
CVE
CVE-2008-5023
Severity
HIGH
CVSS
7.5
EPSS
3.26%
Firefox
Original Filing — NVD Description
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to bypass the protection mechanism for codebase principals and execute arbitrary script via the -moz-binding CSS property in a signed JAR file.