Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Navigator
(Netscape)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 44 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2002-11-29 | CVE-2002-1308 | Heap-based buffer overflow in Netscape and Mozilla allows remote attackers to execute arbitrary code via a jar: URL that references a malformed .jar file, which overflows a buffer during decompression. | Mozilla, Navigator | N/A | ||
2002-10-04 | CVE-2002-1091 | Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with a zero width. | Mozilla, Navigator, Opera_web_browser | N/A | ||
2002-06-18 | CVE-2002-0594 | Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect. | Galeon_browser, Mozilla, Navigator | N/A | ||
2002-06-18 | CVE-2002-0593 | Buffer overflow in Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long channel name in an IRC URI. | Mozilla, Communicator, Navigator | N/A | ||
2002-06-25 | CVE-2002-0354 | The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the result using the responseText property. | Mozilla, Navigator | N/A | ||
2001-01-09 | CVE-2000-1187 | Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field. | Communicator, Navigator | N/A | ||
2000-01-12 | CVE-2000-0087 | Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext. | Communicator, Navigator | N/A | ||
1999-11-24 | CVE-1999-1189 | Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument after the ? character in a URL that references an .asp, .cgi, .html, or .pl file. | Communicator, Navigator | N/A | ||
1999-03-01 | CVE-1999-0440 | The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages. | Communicator, Navigator, Java | N/A | ||
1996-03-29 | CVE-1999-0141 | Java Bytecode Verifier allows malicious applets to execute arbitrary commands as the user of the applet. | Navigator | N/A |