7.5

CVE-2004-0826

Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message.

Data is provided by the National Vulnerability Database (NVD)
NetscapeCertificate Server Version1.0 Updatepatch1
NetscapeCertificate Server Version4.2
NetscapeDirectory Server Version1.3 Updatepatch5
NetscapeDirectory Server Version3.1 Updatepatch1
NetscapeDirectory Server Version3.12
NetscapeDirectory Server Version4.1
NetscapeDirectory Server Version4.11
NetscapeDirectory Server Version4.13
NetscapeEnterprise Server Version2.0
NetscapeEnterprise Server Version2.0.1c
NetscapeEnterprise Server Version2.0a
NetscapeEnterprise Server Version3.0
NetscapeEnterprise Server Version3.0.1
NetscapeEnterprise Server Version3.0.1b
NetscapeEnterprise Server Version3.0.7a Editionnetware
NetscapeEnterprise Server Version3.0l
NetscapeEnterprise Server Version3.1
NetscapeEnterprise Server Version3.2
NetscapeEnterprise Server Version3.3
NetscapeEnterprise Server Version3.4
NetscapeEnterprise Server Version3.5
NetscapeEnterprise Server Version3.5 Editionsolaris
NetscapeEnterprise Server Version3.5.1
NetscapeEnterprise Server Version3.6
NetscapeEnterprise Server Version3.6 Editionsolaris
NetscapeEnterprise Server Version3.6 Updatesp1
NetscapeEnterprise Server Version3.6 Updatesp2
NetscapeEnterprise Server Version3.6 Updatesp3
NetscapeEnterprise Server Version4.0
NetscapeEnterprise Server Version4.1 Updatesp3
NetscapeEnterprise Server Version4.1 Updatesp4
NetscapeEnterprise Server Version4.1 Updatesp5
NetscapeEnterprise Server Version4.1 Updatesp6
NetscapeEnterprise Server Version4.1 Updatesp7
NetscapeEnterprise Server Version4.1 Updatesp8
NetscapeEnterprise Server Version4.1.1 Editionnetware
NetscapeEnterprise Server Version5.0 Editionnetware
SunJava Enterprise System Version2003q4
SunJava Enterprise System Version2004q2
SunJava System Application Server Version7.0 Editionenterprise
SunJava System Application Server Version7.0 Editionplatform
SunJava System Application Server Version7.0 Editionstandard
SunJava System Application Server Version7.0 Updateur4
SunOne Application Server Version6.0
SunOne Application Server Version6.0 Updatesp1
SunOne Application Server Version6.0 Updatesp2
SunOne Web Server Version4.1
SunOne Web Server Version4.1 Updatesp1
SunOne Web Server Version4.1 Updatesp10
SunOne Web Server Version4.1 Updatesp11
SunOne Web Server Version4.1 Updatesp12
SunOne Web Server Version4.1 Updatesp13
SunOne Web Server Version4.1 Updatesp14
SunOne Web Server Version4.1 Updatesp2
SunOne Web Server Version4.1 Updatesp3
SunOne Web Server Version4.1 Updatesp4
SunOne Web Server Version4.1 Updatesp5
SunOne Web Server Version4.1 Updatesp6
SunOne Web Server Version4.1 Updatesp7
SunOne Web Server Version4.1 Updatesp8
SunOne Web Server Version4.1 Updatesp9
SunOne Web Server Version6.0 Updatesp3
SunOne Web Server Version6.0 Updatesp4
SunOne Web Server Version6.0 Updatesp5
SunOne Web Server Version6.0 Updatesp7
SunOne Web Server Version6.0 Updatesp8
SunOne Web Server Version6.1
SunOne Web Server Version6.1 Updatesp1
SunOne Web Server Version6.1 Updatesp2
HpHp-ux Version11.00
HpHp-ux Version11.11
HpHp-ux Version11.23 Editionia64_64-bit
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 3% 0.853
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P