Netscape
netscape
120 CVEs • 21 products
Products (21)
Click to collapseToggle
Products (21)
Click to collapse
CVEs (120)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users. |
talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes. |
talkback in Netscape 4.5 allows a local user to overwrite arbitrary files of another user whose Netscape crashes. |
Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems. |
2Netscape Sun3Communicator JavaNavigatorApr 16, 2026 Mar 1, 1999 N/A· v4 N/A· v3 7.5 HIGH· v2 The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages. |
2Microsoft Netscape2Internet Explorer NavigatorApr 16, 2026 Dec 1, 1998 N/A· v4 N/A· v3 2.6 LOW· v2 Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka frame spoofing. |
Netscape Enterprise servers may list files through the PageServices query. |
2Netscape University Of Washington2Imap Messaging ServerApr 16, 2026 Jul 20, 1998 N/A· v4 N/A· v3 10.0 HIGH· v2 Arbitrary command execution via IMAP buffer overflow in authenticate command. |
5C2net HpMicrosoft+2 more13Certificate Server Collabra ServerDirectory Server+10 moreApr 16, 2026 Jun 26, 1998 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Information from SSL-encrypted sessions via PKCS #1. |
2Microsoft Netscape2Communicator Internet ExplorerApr 16, 2026 Apr 1, 1998 N/A· v4 N/A· v3 7.5 HIGH· v2 A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc. |
2Microsoft Netscape5Enterprise Server Fasttrack ServerFrontpage+2 moreApr 16, 2026 Feb 6, 1998 N/A· v4 7.0 HIGH· v3 5.0 MEDIUM· v2 Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names. |
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET. |
Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the applet was loaded, which violates the Java security model and could allow remote attackers to conduct...Show more |
2Microsoft Netscape2Communicator Internet ExplorerApr 16, 2026 Jul 8, 1997 N/A· v4 N/A· v3 2.6 LOW· v2 JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability. |
5Isc NecNetscape+2 more6Goah Intrasv Goah NetworksvInn+3 moreApr 16, 2026 Feb 20, 1997 N/A· v4 N/A· v3 7.2 HIGH· v2 ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN. |
The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack. |
2Apache Netscape4Commerce Server Communications ServerEnterprise Server+1 moreApr 16, 2026 Dec 10, 1996 N/A· v4 N/A· v3 7.5 HIGH· v2 List of arbitrary files on Web host via nph-test-cgi script. |
6Bsdi CalderaIsc+3 more7Bsd Os Goah IntrasvGoah Networksv+4 moreApr 16, 2026 Dec 4, 1996 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others. |
Java Bytecode Verifier allows malicious applets to execute arbitrary commands as the user of the applet. |
The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet to connect to arbitrary hosts. |