10
CVSSv2

CVE-2004-0722

Published: 18/08/2004 Updated: 11/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote malicious users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

netscape navigator 7.0

netscape navigator 7.1

mozilla mozilla 1.6

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Critical Topic Updated mozilla packages based on version 143 that fix a number ofsecurity issues for Red Hat Enterprise Linux are now available Description Mozilla is an open source Web browser, advanced email and newsgrou ...

Exploits

source: wwwsecurityfocuscom/bid/10843/info It is reported that Mozilla and Netscape contain an integer overflow vulnerability in the SOAPParameter object constructor This overflow may result in the corruption of critical heap memory structures, leading to possible remote code execution An attacker can exploit this issue by crafting a m ...