Page 3 of 35 results (0.001 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

24 Dec 1999 — Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0892 •

CVSS: 9.1EPSS: 0%CPEs: 1EXPL: 0

22 Dec 1999 — Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled "remember passwords." • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0034 •

CVSS: 9.8EPSS: 2%CPEs: 2EXPL: 2

24 Nov 1999 — Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument after the ? character in a URL that references an .asp, .cgi, .html, or .pl file. • http://www.securityfocus.com/archive/1/36306 •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

28 Oct 1999 — Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key. • http://www.securiteam.com/exploits/Netscape_4_7_and_earlier_vulnerable_to__Huge_Key__DoS.html •

CVSS: 7.5EPSS: 1%CPEs: 3EXPL: 0

05 Oct 1999 — Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters. • http://marc.info/?l=bugtraq&m=93915331626185&w=2 •

CVSS: 9.8EPSS: 3%CPEs: 5EXPL: 1

02 Sep 1999 — Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option. • https://www.exploit-db.com/exploits/19486 •

CVSS: 8.2EPSS: 0%CPEs: 1EXPL: 0

09 Jul 1999 — Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed". • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809 •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

24 May 1999 — When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762 •

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

18 Mar 1999 — talkback in Netscape 4.5 allows a local user to overwrite arbitrary files of another user whose Netscape crashes. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0424 •

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

18 Mar 1999 — talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0425 •