Vulnerabilities > CVE-2000-0409 - Unspecified vulnerability in Netscape Communicator

047910
CVSS 3.7 - LOW
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
high complexity
netscape
exploit available

Summary

Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.

Exploit-Db

descriptionNetscape Communicator 4.5/4.51/4.6/4.61/4.7/4.72/4.73 /tmp Symlink Vulnerability. CVE-2000-0409. Local exploits for multiple platform
idEDB-ID:19912
last seen2016-02-02
modified2000-05-10
published2000-05-10
reporterfoo
sourcehttps://www.exploit-db.com/download/19912/
titleNetscape Communicator 4.5/4.51/4.6/4.61/4.7/4.72/4.73 /tmp Symlink Vulnerability