Vulnerability index

Browse CVEs

64 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Enterprise Server MEDIUM 6.1
CVE-2018-18940

servlet/SnoopServlet (a servlet installed by default) in Netscape Enterprise 3.63 has reflected XSS via an arbitrary parameter=[XSS] in the query str…

No fix yet
Fix from $1,600 2019-01-31
Certificate Management System HIGH 7.5
CVE-2008-1676

Red Hat PKI Common Framework (rhpki-common) in Red Hat Certificate System (aka Certificate Server or RHCS) 7.1 through 7.3, and Netscape Certificate …

Fix: after 6.2
Fix from $1,950 2008-07-07
Navigator HIGH 7.5
CVE-2004-1160

Netscape 7.x to 7.2, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a ta…

No fix yet
Fix from $1,950 2005-01-10
Directory Server HIGH 10.0
CVE-2004-1236EPSS 9%

Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute…

Mitigation only
Fix from $1,950 2004-12-31
Navigator MEDIUM 5.0
CVE-2004-0528

Netscape Navigator 7.1 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to t…

No fix yet
Fix from $1,600 2004-08-06
Navigator MEDIUM 5.0
CVE-2003-1560

Netscape 4 sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive…

Mitigation only
Fix from $1,600 2003-12-31
Navigator HIGH 7.5
CVE-2003-0553

Buffer overflow in the Client Detection Tool (CDT) plugin (npcdt.dll) for Netscape 7.02 allows remote attackers to execute arbitrary code via an atta…

Mitigation only
Fix from $1,950 2003-08-18
Communicator HIGH 10.0
CVE-2002-2248EPSS 6%

Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary cod…

Mitigation only
Fix from $1,950 2002-12-31
Communicator MEDIUM 6.4
CVE-2002-2284

Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code via an applet that loads user-s…

Mitigation only
Fix from $1,600 2002-12-31
Communicator MEDIUM 5.0
CVE-2002-2308

Netscape Communicator 6.2.1 allows remote attackers to cause a denial of service in client browsers via a webpage containing a recursive META refresh…

Mitigation only
Fix from $1,600 2002-12-31
Communicator MEDIUM 5.0
CVE-2002-1204

Netscape Communicator 4.x allows attackers to use a link to steal a user's preferences, including potentially sensitive information such as URL histo…

Mitigation only
Fix from $1,600 2002-11-29
Enterprise Server MEDIUM 5.0
CVE-2002-1042

Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Wi…

Patch available
Fix from $1,600 2002-10-04
Messanger MEDIUM 5.0
CVE-2001-0745

Netscape 4.7x allows remote attackers to obtain sensitive information such as the user's login, mailbox location and installation path via Javascript…

No fix yet
Fix from $1,600 2001-10-18
Collabra Server MEDIUM 5.0
CVE-2001-0683

Memory leak in Netscape Collabra Server 3.5.4 and earlier allows a remote attacker to cause a denial of service (memory exhaustion) by repeatedly sen…

Fix: after 3.5.4
Fix from $1,600 2001-09-20
Collabra Server MEDIUM 5.0
CVE-2001-0684

Netscape Collabra Server 3.5.4 and earlier allows a remote attacker to cause a denial of service by sending seven or more characters to TCP port 5239.

Fix: after 3.5.4
Fix from $1,600 2001-09-20
Publishingxpert MEDIUM 5.0
CVE-2000-1196

PSCOErrPage.htm in Netscape PublishingXpert 2.5 before SP2 allows remote attackers to read arbitrary files by specifying the target file in the errPa…

Fix: after 2.5
Fix from $1,600 2001-08-31
Communicator HIGH 7.5
CVE-2001-0596EPSS 9%

Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascript.

Fix: after 4.77
Fix from $1,950 2001-08-02
Smartdownload HIGH 7.5
CVE-2001-0262EPSS 7%

Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL.

Patch available
Fix from $1,950 2001-07-02
Directory Server HIGH 7.5
CVE-2001-0164

Buffer overflow in Netscape Directory Server 4.12 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via …

Fix: after 4.12
Fix from $1,950 2001-06-02
Enterprise Server MEDIUM 5.0
CVE-2001-0250

The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server r…

Patch available
Fix from $1,600 2001-06-02
Enterprise Server MEDIUM 5.0
CVE-2001-0251

The Web Publishing feature in Netscape Enterprise Server 3.x allows remote attackers to cause a denial of service via the REVLOG command.

Patch available
Fix from $1,600 2001-06-02
Fasttrack Server MEDIUM 5.0
CVE-2001-0175

The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large …

Mitigation only
Fix from $1,600 2001-03-26
Enterprise Server HIGH 10.0
CVE-2000-0308

Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an att…

Fix: after 2.1.3
Fix from $1,950 2001-03-12
Enterprise Server MEDIUM 5.0
CVE-1999-0758

Netscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL.

Mitigation only
Fix from $1,600 2001-03-12
Communicator HIGH 7.5
CVE-2000-1187

Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a…

Fix: after 4.75
Fix from $1,950 2001-01-09
Messaging Server HIGH 10.0
CVE-2000-0961

Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command.

Mitigation only
Fix from $1,950 2000-12-19
Messaging Server MEDIUM 5.0
CVE-2000-0960

The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which all…

No fix yet
Fix from $1,600 2000-12-19
Iplanet Ical HIGH 10.0
CVE-2000-1071

The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monit…

Patch available
Fix from $1,950 2000-12-11
Iplanet Ical HIGH 10.0
CVE-2000-1074

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to g…

Patch available
Fix from $1,950 2000-12-11
Directory Server HIGH 10.0
CVE-2000-1076

Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow loc…

Mitigation only
Fix from $1,950 2000-12-11