Filtered by vendor Netscape
Subscriptions
Total
120 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-1999-1532 | 1 Netscape | 1 Messaging Server | 2025-04-03 | N/A |
Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands. | ||||
CVE-2000-0087 | 1 Netscape | 2 Communicator, Navigator | 2025-04-03 | N/A |
Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext. | ||||
CVE-2000-0237 | 1 Netscape | 1 Enterprise Server | 2025-04-03 | N/A |
Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories. | ||||
CVE-2000-0308 | 2 Netscape, Sco | 4 Enterprise Server, Fasttrack Server, Proxy Server and 1 more | 2025-04-03 | N/A |
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges. | ||||
CVE-1999-1357 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters. | ||||
CVE-1999-0892 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font. | ||||
CVE-1999-1002 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
Netscape Navigator uses weak encryption for storing a user's Netscape mail password. | ||||
CVE-1999-1005 | 2 Netscape, Novell | 2 Enterprise Server, Groupwise | 2025-04-03 | N/A |
Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter. | ||||
CVE-1999-0744 | 1 Netscape | 2 Enterprise Server, Fasttrack Server | 2025-04-03 | N/A |
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request. | ||||
CVE-1999-0752 | 1 Netscape | 1 Enterprise Server | 2025-04-03 | N/A |
Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake. | ||||
CVE-1999-0758 | 1 Netscape | 2 Enterprise Server, Fasttrack Server | 2025-04-03 | N/A |
Netscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL. | ||||
CVE-1999-0762 | 1 Netscape | 2 Communicator, Navigator | 2025-04-03 | N/A |
When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information. | ||||
CVE-1999-0790 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
A remote attacker can read information from a Netscape user's cache via JavaScript. | ||||
CVE-1999-0807 | 1 Netscape | 1 Directory Server | 2025-04-03 | N/A |
The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users. | ||||
CVE-1999-0827 | 2 Microsoft, Netscape | 3 Ie, Internet Explorer, Navigator | 2025-04-03 | N/A |
By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing. | ||||
CVE-1999-0685 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option. | ||||
CVE-1999-0174 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack. | ||||
CVE-1999-0269 | 1 Netscape | 1 Enterprise Server | 2025-04-03 | N/A |
Netscape Enterprise servers may list files through the PageServices query. | ||||
CVE-1999-0425 | 1 Netscape | 1 Communicator | 2025-04-03 | N/A |
talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes. | ||||
CVE-1999-0043 | 6 Bsdi, Caldera, Isc and 3 more | 7 Bsd Os, Openlinux, Inn and 4 more | 2025-04-03 | 9.8 Critical |
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others. |