Netscape

    Dashboard / Vendors

    Products: 21
    Vulnerabilities: 120
    Known Exploited: 0
    14
    Critical Level Threats
    34
    High Level Threats
    58
    Medium Level Threats
    14
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2018-18940

    servlet/SnoopServlet (a servlet installed by default) in Netscape Enterprise 3.63 has reflected XSS via an arbitrary parameter=[XSS] in the query string. A remote unauthenticated attacker could potentially exploit this vulnerability to supply malicious HTML or JavaScript code to a vulnerable web application, which is then reflected back to the victim and executed by the web browser. NOTE: this product is discontinued.

    Last Modified: Nov 21, 2024
    Published: Jan 31, 2019

    CVE-2009-2542

    Netscape 6 and 8 allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.

    Last Modified: Apr 23, 2026
    Published: Jul 20, 2009

    CVE-2008-1676

    System: incorrect handling of Extensions in CSRs (cs71)

    Last Modified: Apr 23, 2026
    Published: Jul 02, 2008

    CVE-2008-2809

    Firefox self signed certificate flaw

    Last Modified: Apr 23, 2026
    Published: Jul 02, 2008

    CVE-2007-4042

    Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3) news, (4) snews, or (5) telnet URI, a similar issue to CVE-2007-3670.

    Last Modified: Apr 23, 2026
    Published: Jul 27, 2007
    Items Per Page