Vulnerabilities > Mozilla > Critical

DATE CVE VULNERABILITY TITLE RISK
2004-08-18 CVE-2004-0722 Multiple vulnerability Fixed in SCO OpenServer Release 5.0.7 Maintenance Pack 4 Released -
Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.
network
low complexity
mozilla netscape
critical
10.0
2004-08-18 CVE-2003-1043 Multiple vulnerability in Bugzilla
SQL injection vulnerability in Bugzilla 2.16.3 and earlier, and 2.17.1 through 2.17.4, allows remote authenticated users with editkeywords privileges to execute arbitrary SQL via the id parameter to editkeywords.cgi.
network
low complexity
mozilla
critical
10.0
2004-08-18 CVE-2003-1042 Multiple vulnerability in Bugzilla
SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.
network
low complexity
mozilla
critical
10.0
2004-08-06 CVE-2004-0648 Unspecified vulnerability in Mozilla Firefox, Mozilla and Thunderbird
Mozilla (Suite) before 1.7.1, Firefox before 0.9.2, and Thunderbird before 0.7.2 allow remote attackers to launch arbitrary programs via a URI referencing the shell: protocol.
network
low complexity
mozilla
critical
10.0
2003-10-07 CVE-2003-0791 Deserialization of Untrusted Data vulnerability in multiple products
The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and executed.
network
low complexity
mozilla sco CWE-502
critical
9.8
2002-01-31 CVE-2002-0007 Authentication Bypass vulnerability in BugZilla LDAP
CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.
network
low complexity
mozilla
critical
10.0