Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-4065

Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via byte order mark (BOM) characters that are removed from JavaScript code before execution, aka "Stripped BOM characters bug."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.104
EPSS Ranking 92.9%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2008-4065


Contact Us

Shodan ® - All rights reserved