CVE-2000-0711

Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:virtual_machine:2000:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:virtual_machine:3100:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:virtual_machine:3200:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:virtual_machine:3300:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.0:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.04:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.05:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.5:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.06:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.6:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.07:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.7:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.08:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.51:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.61:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.72:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.73:*:*:*:*:*:*:*
cpe:2.3:a:netscape:communicator:4.74:*:*:*:*:*:*:*

History

20 Nov 2024, 23:33

Type Values Removed Values Added
References () http://www.cert.org/advisories/CA-2000-15.html - Patch, Third Party Advisory, US Government Resource () http://www.cert.org/advisories/CA-2000-15.html - Patch, Third Party Advisory, US Government Resource
References () http://www.securityfocus.com/bid/1545 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/1545 - Exploit, Patch, Vendor Advisory
References () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail%40securityfocus.com - () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail%40securityfocus.com -
References () http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI%40java-house.etl.go.jp - () http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI%40java-house.etl.go.jp -

07 Nov 2023, 01:55

Type Values Removed Values Added
References
  • {'url': 'http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI@java-house.etl.go.jp', 'name': '20000816 JDK 1.1.x Listening Socket Vulnerability (was Re: BrownOrifice can break firewalls!)', 'tags': ['Vendor Advisory'], 'refsource': 'BUGTRAQ'}
  • {'url': 'http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail@securityfocus.com', 'name': '20000805 Dangerous Java/Netscape Security Hole', 'tags': ['Vendor Advisory'], 'refsource': 'BUGTRAQ'}
  • () http://www.securityfocus.com/templates/archive.pike?list=1&msg=3999922128E.EE84TAKAGI%40java-house.etl.go.jp -
  • () http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000805020429.11774.qmail%40securityfocus.com -

Information

Published : 2000-10-20 04:00

Updated : 2024-11-20 23:33


NVD link : CVE-2000-0711

Mitre link : CVE-2000-0711

CVE.ORG link : CVE-2000-0711


JSON object : View

Products Affected

microsoft

  • virtual_machine

netscape

  • communicator