CVE Tools

Netscape

108 CVEs tracked since 1999. Since Sep 1999, none of them reached CISA KEV.

Netscape CVEs per month

Sep 1999 to Jul 2009. Point at a month, or focus the strip and use the arrow keys.
Netscape CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
1999-09120
1999-10null or fewer
1999-11null or fewer
1999-12null or fewer
2000-01120
2000-0230
2000-03null or fewer
2000-0420
2000-05null or fewer
2000-0620
2000-0740
2000-08null or fewer
2000-09null or fewer
2000-1060
2000-1110
2000-12null or fewer
2001-0170
2001-02null or fewer
2001-03null or fewer
2001-0420
2001-0550
2001-06null or fewer
2001-07null or fewer
2001-0820
2001-0950
2001-10null or fewer
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-02null or fewer
2002-0360
2002-04null or fewer
2002-0510
2002-0620
2002-07null or fewer
2002-0820
2002-09null or fewer
2002-10null or fewer
2002-1110
2002-12null or fewer
2003-01null or fewer
2003-02null or fewer
2003-03null or fewer
2003-0420
2003-05null or fewer
2003-06null or fewer
2003-0710
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-12null or fewer
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-04null or fewer
2004-05null or fewer
2004-0610
2004-0710
2004-0810
2004-0960
2004-10null or fewer
2004-11null or fewer
2004-1210
2005-0110
2005-02null or fewer
2005-0320
2005-0430
2005-05null or fewer
2005-06null or fewer
2005-0720
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-0720
2007-08null or fewer
2007-09null or fewer
2007-1060
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-0730
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-02null or fewer
2009-03null or fewer
2009-04null or fewer
2009-05null or fewer
2009-06null or fewer
2009-0710

Products

The products that kept showing up in Netscape's monthly top three, with their CVEs summed over those months.

  1. Communicator3315 months
  2. Navigator3119 months
  3. Enterprise Server2211 months
  4. Fasttrack Server73 months
  5. Directory Server44 months
  6. Iplanet Ical41 month
  7. Collabra Server21 month
  8. Messaging Server21 month
  9. Certificate Management System11 month
  10. Certificate Server11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Netscape.

  1. CVE-2018-18940servlet/SnoopServlet (a servlet installed by default) in Netscape Enterprise 3.63 has reflected XSS via an arbitrary parameter=[XSS] in the query string. A remote unauthenticated attacker could pot...6.1
  2. CVE-2009-2542Netscape 6 and 8 allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.4.3
  3. CVE-2003-1560Netscape 4 sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.5.0
  4. CVE-2008-2809Mozilla 1.9 M8 and earlier, Mozilla Firefox 2 before 2.0.0.15, SeaMonkey 1.1.5 and other versions before 1.1.10, Netscape 9.0, and other Mozilla-based web browsers, when a user accepts an SSL serve...4.0
  5. CVE-2008-1676Red Hat PKI Common Framework (rhpki-common) in Red Hat Certificate System (aka Certificate Server or RHCS) 7.1 through 7.3, and Netscape Certificate Management System 6.x, does not recognize Certif...7.5
  6. CVE-2002-2338The POP3 mail client in Mozilla 1.0 and earlier, and Netscape Communicator 4.7 and earlier, allows remote attackers to cause a denial of service (no new mail) via a mail message containing a dot (....5.0
  7. CVE-2002-2308Netscape Communicator 6.2.1 allows remote attackers to cause a denial of service in client browsers via a webpage containing a recursive META refresh tag where the content tag is blank and the URL ...5.0
  8. CVE-2003-1492Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an HTTP request for a domain with an extra . (dot) at the end.5.0
  9. CVE-2003-1419Netscape 7.0 allows remote attackers to cause a denial of service (crash) via a web page with an invalid regular expression argument to the JavaScript reformatDate function.4.3
  10. CVE-2002-2284Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code via an applet that loads user-supplied Java classes.6.4
  11. CVE-2002-2248Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary code via an applet that calls the WDefaultFontChars...10.0
  12. CVE-2007-4042Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3...7.5
  13. CVE-2007-3924Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registered, allows remote attackers to conduct cross-browser script...9.3
  14. CVE-2007-1377AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspecified resource consumption) via a .pdf URL with ...5.0
  15. CVE-2006-6077The (1) Password Manager in Mozilla Firefox 2.0, and 1.5.0.8 and earlier; and the (2) Passcard Manager in Netscape 8.1.2 and possibly other versions, do not properly verify that an ACTION URL in a ...5.0

The record

Peak rank
#4 in Aug 2001
Busiest month shown
Sep 1999, 12 CVEs
Months with a KEV entry
0 since Sep 1999
Monthly snapshots
33 since 1999
Netscape's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store