Show filters
120 Total Results
Displaying 71-80 of 120
Sort by:
Attacker Value
Unknown
CVE-2000-0711
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.
0
Attacker Value
Unknown
CVE-2000-0676
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp" protocols, as demonstrated by Brown Orifice.
0
Attacker Value
Unknown
CVE-2000-0655
Disclosure Date: July 25, 2000 (last updated February 22, 2025)
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1.
0
Attacker Value
Unknown
CVE-2000-0600
Disclosure Date: June 26, 2000 (last updated February 22, 2025)
Netscape Enterprise Server in NetWare 5.1 allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed URL.
0
Attacker Value
Unknown
CVE-2000-0577
Disclosure Date: June 21, 2000 (last updated February 22, 2025)
Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
0
Attacker Value
Unknown
CVE-2000-0517
Disclosure Date: May 26, 2000 (last updated February 22, 2025)
Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising that site's DNS information.
0
Attacker Value
Unknown
CVE-2000-0409
Disclosure Date: May 10, 2000 (last updated February 22, 2025)
Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.
0
Attacker Value
Unknown
CVE-2000-0406
Disclosure Date: May 10, 2000 (last updated February 22, 2025)
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the "Acros-Suencksen SSL" vulnerability.
0
Attacker Value
Unknown
CVE-1999-0790
Disclosure Date: April 01, 2000 (last updated February 22, 2025)
A remote attacker can read information from a Netscape user's cache via JavaScript.
0
Attacker Value
Unknown
CVE-2000-0236
Disclosure Date: March 17, 2000 (last updated February 22, 2025)
Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver-info and ?wp-cs-dump.
0