Page 12 of 63 results (0.007 seconds)

CVSS: 6.4EPSS: 0%CPEs: 2EXPL: 1

Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories. • http://www.securityfocus.com/bid/1075 http://zsh.stupidphat.com/advisory.cgi?000311-1 •

CVSS: 5.0EPSS: 4%CPEs: 3EXPL: 1

Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter. • https://www.exploit-db.com/exploits/19682 http://marc.info/?l=bugtraq&m=94571433731824&w=2 http://www.osvdb.org/3413 http://www.securityfocus.com/bid/879 •

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 0

Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authentication procedure. • http://www.securityfocus.com/bid/847 •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 1

Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch. • https://www.exploit-db.com/exploits/19493 http://www.securityfocus.com/bid/631 https://exchange.xforce.ibmcloud.com/vulnerabilities/3256 •

CVSS: 5.0EPSS: 2%CPEs: 1EXPL: 1

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file. • https://www.exploit-db.com/exploits/19443 http://marc.info/?l=bugtraq&m=93346448121208&w=2 http://marc.info/?l=ntbugtraq&m=93337389603117&w=2 http://www.securityfocus.com/bid/559 •