CVE-2008-2810: Medium severity firefox vulnerability
Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site for which the user has previously saved a shortcut.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-2810?
CVE-2008-2810 is considered a moderate severity vulnerability as it allows attackers to bypass the Same Origin Policy.
How do I fix CVE-2008-2810?
To fix CVE-2008-2810, upgrade to Mozilla Firefox version 2.0.0.15 or later, or SeaMonkey version 1.1.10 or later.
What specifically is affected by CVE-2008-2810?
CVE-2008-2810 affects Mozilla Firefox versions prior to 2.0.0.15 and SeaMonkey versions prior to 1.1.10.
What type of attack is facilitated by CVE-2008-2810?
CVE-2008-2810 facilitates user-assisted remote attacks that can bypass the Same Origin Policy.
How does CVE-2008-2810 exploit user actions?
CVE-2008-2810 exploits user actions by manipulating Windows shortcut files saved from crafted websites.