← All CVEs

CVE-2000-0676

medium · 5

Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp" protocols, as demonstrated by Brown Orifice.

5
CVSS
20.5%
EPSS (exploit prob.)
97th
EPSS percentile
2000-10-20
Published

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

VendorProductAffected versions
netscapecommunicator4.0
netscapecommunicator4.04
netscapecommunicator4.05
netscapecommunicator4.5
netscapecommunicator4.5_beta
netscapecommunicator4.06
netscapecommunicator4.6
netscapecommunicator4.07
netscapecommunicator4.08
netscapecommunicator4.51
netscapecommunicator4.61
netscapecommunicator4.72
netscapecommunicator4.73
netscapecommunicator4.74

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2000-0676