CVE Vulnerabilities

CVE-2000-0517

Published: May 26, 2000 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising that sites DNS information.

Affected Software

Name Vendor Start Version End Version
Communicator Netscape 4.0 (including) 4.0 (including)
Communicator Netscape 4.5 (including) 4.5 (including)
Communicator Netscape 4.6 (including) 4.6 (including)
Communicator Netscape 4.7 (including) 4.7 (including)
Communicator Netscape 4.51 (including) 4.51 (including)
Communicator Netscape 4.61 (including) 4.61 (including)
Communicator Netscape 4.72 (including) 4.72 (including)
Communicator Netscape 4.73 (including) 4.73 (including)

References