Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2002-1308

Опубликовано: 29 нояб. 2002
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Heap-based buffer overflow in Netscape and Mozilla allows remote attackers to execute arbitrary code via a jar: URL that references a malformed .jar file, which overflows a buffer during decompression.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:mozilla:mozilla:0.9.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:0.9.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:0.9.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:0.9.9:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:1.0:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:mozilla:1.1:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:6.2:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:6.2.1:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:6.2.2:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:6.2.3:*:*:*:*:*:*:*
cpe:2.3:a:netscape:navigator:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05421
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

redhat
больше 22 лет назад

Heap-based buffer overflow in Netscape and Mozilla allows remote attackers to execute arbitrary code via a jar: URL that references a malformed .jar file, which overflows a buffer during decompression.

debian
больше 22 лет назад

Heap-based buffer overflow in Netscape and Mozilla allows remote attac ...

github
около 3 лет назад

Heap-based buffer overflow in Netscape and Mozilla allows remote attackers to execute arbitrary code via a jar: URL that references a malformed .jar file, which overflows a buffer during decompression.

EPSS

Процентиль: 90%
0.05421
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other