Page 20 of 120 results (0.002 seconds)

CVSS: 5.0EPSS: 2%CPEs: 1EXPL: 1

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file. • https://www.exploit-db.com/exploits/19443 http://marc.info/?l=bugtraq&m=93346448121208&w=2 http://marc.info/?l=ntbugtraq&m=93337389603117&w=2 http://www.securityfocus.com/bid/559 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed". • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809 •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 1

Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake. • https://www.exploit-db.com/exploits/19416 https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0752 •

CVSS: 2.6EPSS: 0%CPEs: 3EXPL: 0

When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762 •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 0

Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL. • http://www.ciac.org/ciac/bulletins/j-046.shtml http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9906-098 •