Vulnerability index

Browse CVEs

64 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Iplanet Ical HIGH 7.2
CVE-2000-1072

iCal 2.1 Patch 2 installs many files with world-writeable permissions, which allows local users to modify the iCal configuration and execute arbitrar…

Patch available
Fix from $1,950 2000-12-11
Iplanet Ical HIGH 7.2
CVE-2000-1073

csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileg…

Patch available
Fix from $1,950 2000-12-11
Directory Server MEDIUM 5.0
CVE-2000-1075EPSS 6%

Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary fi…

Patch available
Fix from $1,600 2000-12-11
Communicator MEDIUM 5.0
CVE-2000-0676EPSS 20%

Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to …

Patch available
Fix from $1,600 2000-10-20
Enterprise Server HIGH 7.5
CVE-2000-0600

Netscape Enterprise Server in NetWare 5.1 allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed URL.

Patch available
Fix from $1,950 2000-06-26
Professional Services Ftpserver HIGH 10.0
CVE-2000-0577

Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

Mitigation only
Fix from $1,950 2000-06-21
Communicator MEDIUM 5.0
CVE-2000-0517

Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate fo…

Patch available
Fix from $1,600 2000-05-26
Enterprise Server MEDIUM 5.0
CVE-2000-0236EPSS 6%

Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver…

Mitigation only
Fix from $1,600 2000-03-17
Enterprise Server MEDIUM 6.4
CVE-2000-0237

Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher dir…

Patch available
Fix from $1,600 2000-03-11
Communicator MEDIUM 5.0
CVE-1999-1002

Netscape Navigator uses weak encryption for storing a user's Netscape mail password.

Mitigation only
Fix from $1,600 2000-01-12
Communicator MEDIUM 5.0
CVE-2000-0087

Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator …

Mitigation only
Fix from $1,600 2000-01-12
Enterprise Server HIGH 7.5
CVE-1999-0744

Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.

Mitigation only
Fix from $1,950 2000-01-04
Communicator MEDIUM 5.0
CVE-2000-0034

Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled "remember passwords."

Mitigation only
Fix from $1,600 1999-12-22
Enterprise Server MEDIUM 5.0
CVE-1999-1005EPSS 8%

Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP paramete…

Mitigation only
Fix from $1,600 1999-12-19
Enterprise Server HIGH 10.0
CVE-1999-0853

Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authenticat…

Mitigation only
Fix from $1,950 1999-12-01
Communicator HIGH 7.5
CVE-1999-1189

Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possib…

Patch available
Fix from $1,950 1999-11-24
Messaging Server MEDIUM 5.0
CVE-1999-1532

Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO …

No fix yet
Fix from $1,600 1999-10-29
Communicator HIGH 7.5
CVE-1999-1357

Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and…

Fix: after 4.7
Fix from $1,950 1999-10-05
Enterprise Server MEDIUM 5.0
CVE-1999-0751

Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.

Mitigation only
Fix from $1,600 1999-09-13
Communicator MEDIUM 5.1
CVE-1999-0685

Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.

No fix yet
Fix from $1,600 1999-09-02
Enterprise Server MEDIUM 5.0
CVE-1999-1130

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the sour…

Fix: after 3.5.1
Fix from $1,600 1999-07-30
Communicator MEDIUM 5.0
CVE-1999-0809

Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cook…

Mitigation only
Fix from $1,600 1999-07-09
Enterprise Server MEDIUM 5.0
CVE-1999-0752

Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.

Mitigation only
Fix from $1,600 1999-07-06
Enterprise Server MEDIUM 5.0
CVE-1999-0686

Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.

Mitigation only
Fix from $1,600 1999-05-07
Directory Server HIGH 7.2
CVE-1999-0807

The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users.

Mitigation only
Fix from $1,950 1999-05-01
Communicator MEDIUM 6.4
CVE-1999-0425

talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes.

Mitigation only
Fix from $1,600 1999-03-18
Communicator HIGH 7.5
CVE-1999-0440

The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages.

Mitigation only
Fix from $1,950 1999-03-01
Enterprise Server MEDIUM 5.0
CVE-1999-0479

Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.

No fix yet
Fix from $1,600 1999-03-01
Enterprise Server MEDIUM 5.0
CVE-1999-0269EPSS 5%

Netscape Enterprise servers may list files through the PageServices query.

Mitigation only
Fix from $1,600 1998-08-01
Messaging Server HIGH 10.0
CVE-1999-0005EPSS 18%

Arbitrary command execution via IMAP buffer overflow in authenticate command.

Mitigation only
Fix from $1,950 1998-07-20