PT-1999-1365 · Netscape · Netscape Communicator

Published

1999-07-09

·

Updated

2022-08-17

·

CVE-1999-0809

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Netscape Communicator version 4.x
Description The issue concerns Netscape Communicator 4.x with Javascript enabled, where it does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
Recommendations For Netscape Communicator version 4.x, consider disabling Javascript as a temporary workaround to minimize the risk of exploitation. Restrict cookie acceptance to only those originating from the same server as the page being viewed to reduce potential issues. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-1999-0809

Affected Products

Netscape Communicator