CVE-2002-1091
- EPSS 5.2%
- Published 04.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with a zero width.
CVE-2002-1126
- EPSS 0.55%
- Published 24.09.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Mozilla 1.1 and earlier, and Mozilla-based browsers such as Netscape and Galeon, set the document referrer too quickly in certain situations when a new page is being loaded, which allows web pages to determine the next page that is being visited, inc...
CVE-2002-0815
- EPSS 1.43%
- Published 12.08.2002 04:00:00
- Last modified 03.04.2025 01:03:51
The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domai...
- EPSS 0.38%
- Published 25.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the resu...
CVE-2002-0593
- EPSS 3.4%
- Published 18.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long channel name in an IRC URI.
- EPSS 1.27%
- Published 18.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect.
- EPSS 5.02%
- Published 31.12.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Mozilla 0.9.6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.
- EPSS 15.25%
- Published 25.07.2000 04:00:00
- Last modified 03.04.2025 01:03:51
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1.