netscape kayıtları
netscape üreticisine ait 120 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %0,8
- Pre-auth RCE
- 26
- Düzeltme kaydı olan
- %9,2
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation5
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-255 Credentials Management Errors1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-290 Authentication Bypass by Spoofing1
- CWE-327 Use of a Broken or Risky Cryptographic Algorithm1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
120 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
52Planlayın | CVE-1999-0043İstismar yok | Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.isc · inn · CWE-78 | Kritik9,8 | — | %44,6 | 4 Ara 1996 |
46Planlayın | CVE-1999-0005Kavram kanıtı | Arbitrary command execution via IMAP buffer overflow in authenticate command.netscape · messaging server | Kritik10,0 | — | %18,4 | 20 Tem 1998 |
44Planlayın | CVE-2004-0722Kavram kanıtı | Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versimozilla · mozilla | Kritik10,0 | — | %13,2 | 18 Ağu 2004 |
43Planlayın | CVE-2004-1236İstismar yok | Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers tnetscape · directory server | Kritik10,0 | — | %8,9 | 31 Ara 2004 |
42Planlayın | CVE-2004-0904İstismar yok | Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.mozilla · firefox | Kritik10,0 | — | %8,0 | 31 Ara 2004 |
42Planlayın | CVE-2002-2248İstismar yok | Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbinetscape · communicator · CWE-119 | Kritik10,0 | — | %5,8 | 31 Ara 2002 |
41Planlayın | CVE-2007-3924İstismar yok | Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registeredmicrosoft · internet explorer | Kritik9,3 | — | %13,6 | 20 Tem 2007 |
41Planlayın | CVE-2000-0577Kavram kanıtı | Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a ..netscape · professional services ftpserver | Kritik10,0 | — | %4,5 | 21 Haz 2000 |
41Planlayın | CVE-2000-1074Kavram kanıtı | csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser accnetscape · iplanet ical | Kritik10,0 | — | %4,1 | 11 Ara 2000 |
41Planlayın | CVE-1999-0853İstismar yok | Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Aunetscape · enterprise server | Kritik10,0 | — | %3,4 | 1 Ara 1999 |
41Planlayın | CVE-2000-1071İstismar yok | The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackersnetscape · iplanet ical | Kritik10,0 | — | %3,0 | 11 Ara 2000 |
41Planlayın | CVE-2000-0961İstismar yok | Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST conetscape · messaging server | Kritik10,0 | — | %2,4 | 19 Ara 2000 |
41Planlayın | CVE-2000-0308İstismar yok | Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allnetscape · enterprise server | Kritik10,0 | — | %2,2 | 12 Mar 2001 |
40Planlayın | CVE-2000-0711Kavram kanıtı | Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackernetscape · communicator | Yüksek7,5 | — | %33,5 | 20 Eki 2000 |
40Planlayın | CVE-2000-1076İstismar yok | Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could netscape · directory server | Kritik10,0 | — | %1,6 | 11 Ara 2000 |
38İzleyin | CVE-1999-0045Kavram kanıtı | List of arbitrary files on Web host via nph-test-cgi script.apache · http server | Yüksek7,5 | — | %26,0 | 10 Ara 1996 |
37İzleyin | CVE-2004-0826İstismar yok | Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modifnetscape · certificate server | Yüksek7,5 | — | %22,5 | 31 Ara 2004 |
35İzleyin | CVE-2006-4253Kavram kanıtı | Concurrency vulnerability in Mozilla Firefox 1.5.0.6 and earlier allows remote attackers to cause a denial of service (crash) and possibly emozilla · firefox · CWE-264 | Yüksek7,6 | — | %15,2 | 21 Ağu 2006 |
34İzleyin | CVE-1999-0012İstismar yok | Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.microsoft · frontpage · CWE-290 | Yüksek7,0 | — | %18,5 | 6 Şub 1998 |
33İzleyin | CVE-2007-4042İstismar yok | Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%0netscape · navigator | Yüksek7,5 | — | %10,3 | 27 Tem 2007 |
33İzleyin | CVE-2001-0596Kavram kanıtı | Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascrnetscape · communicator | Yüksek7,5 | — | %8,7 | 2 Ağu 2001 |
32İzleyin | CVE-1999-0239Kavram kanıtı | Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.netscape · fasttrack server · CWE-178 | Yüksek7,5 | — | %7,6 | 1 Oca 1998 |
32İzleyin | CVE-2001-0262Kavram kanıtı | Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL.netscape · smartdownload | Yüksek7,5 | — | %7,5 | 2 Tem 2001 |
32İzleyin | CVE-1999-0537İstismar yok | A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Jnetscape · communicator | Yüksek7,5 | — | %6,0 | 1 Nis 1998 |
31İzleyin | CVE-2002-1091İstismar yok | Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image withmozilla · mozilla | Yüksek7,5 | — | %4,3 | 4 Eki 2002 |
- CVE-1999-004352Planlayın
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
KritikCVSS 9,8İstismar yokEPSS %45isc · inn4 Ara 1996
- CVE-1999-000546Planlayın
Arbitrary command execution via IMAP buffer overflow in authenticate command.
KritikCVSS 10,0Kavram kanıtıEPSS %18netscape · messaging server20 Tem 1998
- CVE-2004-072244Planlayın
Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versi
KritikCVSS 10,0Kavram kanıtıEPSS %13mozilla · mozilla18 Ağu 2004
- CVE-2004-123643Planlayın
Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers t
KritikCVSS 10,0İstismar yokEPSS %9netscape · directory server31 Ara 2004
- CVE-2004-090442Planlayın
Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.
KritikCVSS 10,0İstismar yokEPSS %8mozilla · firefox31 Ara 2004
- CVE-2002-224842Planlayın
Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbi
KritikCVSS 10,0İstismar yokEPSS %6netscape · communicator31 Ara 2002
- CVE-2007-392441Planlayın
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registered
KritikCVSS 9,3İstismar yokEPSS %14microsoft · internet explorer20 Tem 2007
- CVE-2000-057741Planlayın
Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a ..
KritikCVSS 10,0Kavram kanıtıEPSS %5netscape · professional services ftpserver21 Haz 2000
- CVE-2000-107441Planlayın
csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser acc
KritikCVSS 10,0Kavram kanıtıEPSS %4netscape · iplanet ical11 Ara 2000
- CVE-1999-085341Planlayın
Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Au
KritikCVSS 10,0İstismar yokEPSS %3netscape · enterprise server1 Ara 1999
- CVE-2000-107141Planlayın
The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers
KritikCVSS 10,0İstismar yokEPSS %3netscape · iplanet ical11 Ara 2000
- CVE-2000-096141Planlayın
Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST co
KritikCVSS 10,0İstismar yokEPSS %2netscape · messaging server19 Ara 2000
- CVE-2000-030841Planlayın
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 all
KritikCVSS 10,0İstismar yokEPSS %2netscape · enterprise server12 Mar 2001
- CVE-2000-071140Planlayın
Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attacker
YüksekCVSS 7,5Kavram kanıtıEPSS %34netscape · communicator20 Eki 2000
- CVE-2000-107640Planlayın
Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could
KritikCVSS 10,0İstismar yokEPSS %2netscape · directory server11 Ara 2000
- CVE-1999-004538İzleyin
List of arbitrary files on Web host via nph-test-cgi script.
YüksekCVSS 7,5Kavram kanıtıEPSS %26apache · http server10 Ara 1996
- CVE-2004-082637İzleyin
Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modif
YüksekCVSS 7,5İstismar yokEPSS %23netscape · certificate server31 Ara 2004
- CVE-2006-425335İzleyin
Concurrency vulnerability in Mozilla Firefox 1.5.0.6 and earlier allows remote attackers to cause a denial of service (crash) and possibly e
YüksekCVSS 7,6Kavram kanıtıEPSS %15mozilla · firefox21 Ağu 2006
- CVE-1999-001234İzleyin
Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
YüksekCVSS 7,0İstismar yokEPSS %19microsoft · frontpage6 Şub 1998
- CVE-2007-404233İzleyin
Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%0
YüksekCVSS 7,5İstismar yokEPSS %10netscape · navigator27 Tem 2007
- CVE-2001-059633İzleyin
Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascr
YüksekCVSS 7,5Kavram kanıtıEPSS %9netscape · communicator2 Ağu 2001
- CVE-1999-023932İzleyin
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
YüksekCVSS 7,5Kavram kanıtıEPSS %8netscape · fasttrack server1 Oca 1998
- CVE-2001-026232İzleyin
Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL.
YüksekCVSS 7,5Kavram kanıtıEPSS %7netscape · smartdownload2 Tem 2001
- CVE-1999-053732İzleyin
A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, J
YüksekCVSS 7,5İstismar yokEPSS %6netscape · communicator1 Nis 1998
- CVE-2002-109131İzleyin
Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with
YüksekCVSS 7,5İstismar yokEPSS %4mozilla · mozilla4 Eki 2002