CVE-2004-0722 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 13.2% (pctl 96)
Patch early
A public exploit exists.
Description
Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 13.25% — more likely to be exploited than 96% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2004-08-18 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| mozilla | mozilla |
| netscape | navigator |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Mozilla 1.x / Netscape 7.0/7.1 - SOAP Integer Overflow | 2004-08-02 |
References
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://bugzilla.mozilla.org/show_bug.cgi?id=236618
- http://www.idefense.com/application/poi/display?id=117&type=vulnerabilities
- http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
- http://www.redhat.com/support/errata/RHSA-2004-421.html
- http://www.securityfocus.com/bid/15495
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16862
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4629
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9378
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://bugzilla.mozilla.org/show_bug.cgi?id=236618
- http://www.idefense.com/application/poi/display?id=117&type=vulnerabilities
- http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
- http://www.redhat.com/support/errata/RHSA-2004-421.html
- http://www.securityfocus.com/bid/15495
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16862
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4629
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9378
→ the Explorer · watch your stack · NVD