CVE Vulnerabilities

CVE-2000-0406

Published: May 10, 2000 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the Acros-Suencksen SSL vulnerability.

Affected Software

NameVendorStart VersionEnd Version
CommunicatorNetscape4.0 (including)4.0 (including)
CommunicatorNetscape4.05 (including)4.05 (including)
CommunicatorNetscape4.5 (including)4.5 (including)
CommunicatorNetscape4.5_beta (including)4.5_beta (including)
CommunicatorNetscape4.06 (including)4.06 (including)
CommunicatorNetscape4.6 (including)4.6 (including)
CommunicatorNetscape4.07 (including)4.07 (including)
CommunicatorNetscape4.7 (including)4.7 (including)
CommunicatorNetscape4.51 (including)4.51 (including)
CommunicatorNetscape4.61 (including)4.61 (including)
CommunicatorNetscape4.72 (including)4.72 (including)

References