CVE Database
/

CVE-2003-0791

Back to search

CVE-2003-0791

Published: Apr 14, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and executed.

VendorProductVersions

n/a

n/a

affected
n/a

References

MDKSA-2004:021
vendor-advisory
x_refsource_MANDRAKE
8390
vdb-entry
x_refsource_OSVDB
11103
third-party-advisory
x_refsource_SECUNIA
9322
vdb-entry
x_refsource_BID
SCOSA-2004.8
vendor-advisory
x_refsource_SCO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now