Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2003-0791
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2003-0791

Description:
The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and executed.

CVE Status:
Candidate

References:

SCO
  http://www.securityfocus.com/advisories/6979

SAID
  Secunia Advisory: SA11103

OSVDB
  8390

MISC

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:021

BID
  9322


Return to the previous page.