Vulnerability index

Browse CVEs

40 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Enterprise Server MEDIUM 6.1
CVE-2018-18940

servlet/SnoopServlet (a servlet installed by default) in Netscape Enterprise 3.63 has reflected XSS via an arbitrary parameter=[XSS] in the query str…

No fix yet
Fix from $1,600 2019-01-31
Navigator HIGH 7.5
CVE-2004-1160

Netscape 7.x to 7.2, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a ta…

No fix yet
Fix from $1,950 2005-01-10
Directory Server HIGH 10.0
CVE-2004-1236EPSS 9%

Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute…

Mitigation only
Fix from $1,950 2004-12-31
Navigator MEDIUM 5.0
CVE-2004-0528

Netscape Navigator 7.1 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to t…

No fix yet
Fix from $1,600 2004-08-06
Navigator MEDIUM 5.0
CVE-2003-1560

Netscape 4 sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive…

Mitigation only
Fix from $1,600 2003-12-31
Navigator HIGH 7.5
CVE-2003-0553

Buffer overflow in the Client Detection Tool (CDT) plugin (npcdt.dll) for Netscape 7.02 allows remote attackers to execute arbitrary code via an atta…

Mitigation only
Fix from $1,950 2003-08-18
Communicator HIGH 10.0
CVE-2002-2248EPSS 6%

Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary cod…

Mitigation only
Fix from $1,950 2002-12-31
Communicator MEDIUM 6.4
CVE-2002-2284

Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code via an applet that loads user-s…

Mitigation only
Fix from $1,600 2002-12-31
Communicator MEDIUM 5.0
CVE-2002-2308

Netscape Communicator 6.2.1 allows remote attackers to cause a denial of service in client browsers via a webpage containing a recursive META refresh…

Mitigation only
Fix from $1,600 2002-12-31
Communicator MEDIUM 5.0
CVE-2002-1204

Netscape Communicator 4.x allows attackers to use a link to steal a user's preferences, including potentially sensitive information such as URL histo…

Mitigation only
Fix from $1,600 2002-11-29
Messanger MEDIUM 5.0
CVE-2001-0745

Netscape 4.7x allows remote attackers to obtain sensitive information such as the user's login, mailbox location and installation path via Javascript…

No fix yet
Fix from $1,600 2001-10-18
Fasttrack Server MEDIUM 5.0
CVE-2001-0175

The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large …

Mitigation only
Fix from $1,600 2001-03-26
Enterprise Server MEDIUM 5.0
CVE-1999-0758

Netscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL.

Mitigation only
Fix from $1,600 2001-03-12
Messaging Server HIGH 10.0
CVE-2000-0961

Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command.

Mitigation only
Fix from $1,950 2000-12-19
Messaging Server MEDIUM 5.0
CVE-2000-0960

The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which all…

No fix yet
Fix from $1,600 2000-12-19
Directory Server HIGH 10.0
CVE-2000-1076

Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow loc…

Mitigation only
Fix from $1,950 2000-12-11
Professional Services Ftpserver HIGH 10.0
CVE-2000-0577

Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.

Mitigation only
Fix from $1,950 2000-06-21
Enterprise Server MEDIUM 5.0
CVE-2000-0236EPSS 6%

Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web publishing tags such as ?wp-ver…

Mitigation only
Fix from $1,600 2000-03-17
Communicator MEDIUM 5.0
CVE-1999-1002

Netscape Navigator uses weak encryption for storing a user's Netscape mail password.

Mitigation only
Fix from $1,600 2000-01-12
Communicator MEDIUM 5.0
CVE-2000-0087

Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator …

Mitigation only
Fix from $1,600 2000-01-12
Enterprise Server HIGH 7.5
CVE-1999-0744

Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.

Mitigation only
Fix from $1,950 2000-01-04
Communicator MEDIUM 5.0
CVE-2000-0034

Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled "remember passwords."

Mitigation only
Fix from $1,600 1999-12-22
Enterprise Server MEDIUM 5.0
CVE-1999-1005EPSS 8%

Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP paramete…

Mitigation only
Fix from $1,600 1999-12-19
Enterprise Server HIGH 10.0
CVE-1999-0853

Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authenticat…

Mitigation only
Fix from $1,950 1999-12-01
Messaging Server MEDIUM 5.0
CVE-1999-1532

Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO …

No fix yet
Fix from $1,600 1999-10-29
Enterprise Server MEDIUM 5.0
CVE-1999-0751

Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.

Mitigation only
Fix from $1,600 1999-09-13
Communicator MEDIUM 5.1
CVE-1999-0685

Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.

No fix yet
Fix from $1,600 1999-09-02
Communicator MEDIUM 5.0
CVE-1999-0809

Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cook…

Mitigation only
Fix from $1,600 1999-07-09
Enterprise Server MEDIUM 5.0
CVE-1999-0752

Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.

Mitigation only
Fix from $1,600 1999-07-06
Enterprise Server MEDIUM 5.0
CVE-1999-0686

Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.

Mitigation only
Fix from $1,600 1999-05-07