CVE Vulnerabilities

CVE-2000-0409

Published: May 10, 2000 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.7 LOW
AV:L/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.

Affected Software

NameVendorStart VersionEnd Version
CommunicatorNetscape4.5 (including)4.5 (including)
CommunicatorNetscape4.6 (including)4.6 (including)
CommunicatorNetscape4.7 (including)4.7 (including)
CommunicatorNetscape4.51 (including)4.51 (including)
CommunicatorNetscape4.61 (including)4.61 (including)
CommunicatorNetscape4.72 (including)4.72 (including)
CommunicatorNetscape4.73 (including)4.73 (including)

References