Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked popups to have an internal zone origin, which allows user-assisted remote attackers to cross zone restrictions and read arbitrary file:// URIs by convincing a user to show a blocked popup.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.047
EPSS Ranking 89.4%