PT-1999-1365 · Netscape · Netscape Communicator
Published
1999-07-09
·
Updated
2022-08-17
·
CVE-1999-0809
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Netscape Communicator version 4.x
Description
The issue concerns Netscape Communicator 4.x with Javascript enabled, where it does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
Recommendations
For Netscape Communicator version 4.x, consider disabling Javascript as a temporary workaround to minimize the risk of exploitation. Restrict cookie acceptance to only those originating from the same server as the page being viewed to reduce potential issues. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netscape Communicator