PT-2004-1802 · Netscape+1 · Netscape+1

Zen-Parse

·

Published

2004-08-03

·

Updated

2017-10-11

·

CVE-2004-0722

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Netscape versions 7.0 through 7.1 Mozilla versions 1.6 and possibly earlier
Description The issue is related to an integer overflow in the SOAPParameter object constructor, which allows remote attackers to execute arbitrary code.
Recommendations For Netscape versions 7.0 through 7.1, consider updating to a version where this issue is fixed, if available. For Mozilla versions 1.6 and possibly earlier, consider updating to a version where this issue is fixed, if available. As a temporary workaround, consider restricting access to the SOAPParameter object constructor until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0722

Affected Products

Mozilla Firefox
Netscape