Vulnerabilities > Netscape > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2000-01-04 | CVE-1999-0744 | Unspecified vulnerability in Netscape Enterprise Server and Fasttrack Server Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request. | 7.5 |
1999-11-24 | CVE-1999-1189 | Unspecified vulnerability in Netscape Communicator and Navigator Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument after the ? character in a URL that references an .asp, .cgi, .html, or .pl file. | 7.5 |
1999-10-05 | CVE-1999-1357 | Unspecified vulnerability in Netscape Communicator Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters. | 7.5 |
1999-05-01 | CVE-1999-0807 | Unspecified vulnerability in Netscape Directory Server The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users. | 7.2 |
1999-03-01 | CVE-1999-0440 | The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages. | 7.5 |
1998-04-01 | CVE-1999-0537 | A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc. | 7.5 |
1998-01-01 | CVE-1999-0239 | Improper Handling of Case Sensitivity vulnerability in Netscape Fasttrack Server 3.01 Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET. | 7.5 |
1997-02-20 | CVE-1999-0868 | ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN. | 7.2 |
1996-12-10 | CVE-1999-0045 | List of arbitrary files on Web host via nph-test-cgi script. | 7.5 |
1996-03-01 | CVE-1999-0142 | The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet to connect to arbitrary hosts. | 7.5 |