PT-2000-1076 · Netscape · Netscape Communicator

Publicado

2000-01-12

·

Atualizado

2016-10-18

·

CVE-2000-0087

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Netscape Communicator (affected versions not specified)
Description The issue concerns the Netscape Mail Notification (nsnotify) utility in Netscape Communicator, which uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection. This allows a remote attacker to sniff usernames and passwords in plaintext.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-0087

Produtos afetados

Netscape Communicator