Page 17 of 120 results (0.001 seconds)

CVSS: 6.4EPSS: 0%CPEs: 2EXPL: 1

Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories. • http://www.securityfocus.com/bid/1075 http://zsh.stupidphat.com/advisory.cgi?000311-1 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Netscape Navigator uses weak encryption for storing a user's Netscape mail password. • http://marc.info/?l=bugtraq&m=94536309217214&w=2 http://marc.info/?l=bugtraq&m=94570673523998&w=2 http://www.rstcorp.com/news/bad-crypto.html •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 0

Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext. • http://marc.info/?l=bugtraq&m=94790377622943&w=2 http://www.iss.net/security_center/static/4385.php •

CVSS: 7.5EPSS: 4%CPEs: 2EXPL: 3

Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request. • https://www.exploit-db.com/exploits/263 https://www.exploit-db.com/exploits/19705 https://www.exploit-db.com/exploits/19783 http://www.securityfocus.com/bid/603 •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0892 •