PT-2004-1802 · Netscape+1 · Netscape+1
Zen-Parse
·
Publicado
2004-08-03
·
Atualizado
2017-10-11
·
CVE-2004-0722
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Netscape versions 7.0 through 7.1
Mozilla versions 1.6 and possibly earlier
Description
The issue is related to an integer overflow in the SOAPParameter object constructor, which allows remote attackers to execute arbitrary code.
Recommendations
For Netscape versions 7.0 through 7.1, consider updating to a version where this issue is fixed, if available.
For Mozilla versions 1.6 and possibly earlier, consider updating to a version where this issue is fixed, if available.
As a temporary workaround, consider restricting access to the SOAPParameter object constructor until a patch is available.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Mozilla Firefox
Netscape