AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-0902

HIGH · CVSS 10 EPSS 10.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-01-27 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 10.0. It affects Firefox. Its EPSS score suggests a 10.1% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2004-0902
Severity
HIGH
CVSS
10
EPSS
10.14%
Firefox

Original NVD Description

Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via (1) the "Send page" functionality, (2) certain responses from a malicious POP3 server, or (3) a link containing a non-ASCII hostname.