The directory traversal fix in Firefox version 2.0.0.4 only partially fixed the flaw and accidentally circumvents an existing input validation check.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/57047/firefox-traverse.txt
Source: https://packetstormsecurity.com/files/57047/firefox-traverse.txt.html