AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2003-0791

CRITICAL · CVSS 9.8 EPSS 2.13%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2003-10-07 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Java.

CVE
CVE-2003-0791
Severity
CRITICAL
CVSS
9.8
EPSS
2.13%
Java

Original NVD Description

The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and executed.