Mozilla · Firefox · CVE-2008-5019
**Name of the Vulnerable Software and Affected Versions**
Mozilla Firefox versions 2.x through 2.0.0.17
Mozilla Firefox versions 3.x through 3.0.3
**Description**
The issue allows remote attackers to violate the same origin policy, enabling cross-site scripting (XSS) attacks and the execution of arbitrary JavaScript with chrome privileges.
**Recommendations**
For Mozilla Firefox versions 2.x through 2.0.0.17, update to version 2.0.0.18 or later.
For Mozilla Firefox versions 3.x through 3.0.3, update to version 3.0.4 or later.