PT-2004-1802 · Netscape+1 · Netscape+1
Zen-Parse
·
Published
2004-08-03
·
Updated
2017-10-11
·
CVE-2004-0722
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Netscape versions 7.0 through 7.1
Mozilla versions 1.6 and possibly earlier
Description
The issue is related to an integer overflow in the SOAPParameter object constructor, which allows remote attackers to execute arbitrary code.
Recommendations
For Netscape versions 7.0 through 7.1, consider updating to a version where this issue is fixed, if available.
For Mozilla versions 1.6 and possibly earlier, consider updating to a version where this issue is fixed, if available.
As a temporary workaround, consider restricting access to the SOAPParameter object constructor until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mozilla Firefox
Netscape