CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.6. It affects Firefox. It may be remotely exploitable.
CVE
CVE-2008-5503
Severity
LOW
CVSS
2.6
EPSS
1.52%
Firefox
Original NVD Description
The loadBindingDocument function in Mozilla Firefox 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 does not perform any security checks related to the same-domain policy, which allows remote attackers to read or access data from other domains via crafted XBL bindings.