7.5

CVE-2000-0711

Exploit

Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftVirtual Machine Version2000
MicrosoftVirtual Machine Version3100
MicrosoftVirtual Machine Version3200
MicrosoftVirtual Machine Version3300
NetscapeCommunicator Version4.0
NetscapeCommunicator Version4.04
NetscapeCommunicator Version4.05
NetscapeCommunicator Version4.5
NetscapeCommunicator Version4.06
NetscapeCommunicator Version4.6
NetscapeCommunicator Version4.07
NetscapeCommunicator Version4.7
NetscapeCommunicator Version4.08
NetscapeCommunicator Version4.51
NetscapeCommunicator Version4.61
NetscapeCommunicator Version4.72
NetscapeCommunicator Version4.73
NetscapeCommunicator Version4.74
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.75% 0.909
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P