Netscape Communicator and Navigator 4.04 up to and including 4.74 allows remote malicious users to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp" protocols, as demonstrated by Brown Orifice.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
netscape communicator 4.0 |
||
netscape communicator 4.05 |
||
netscape communicator 4.07 |
||
netscape communicator 4.6 |
||
netscape communicator 4.72 |
||
netscape communicator 4.74 |
||
netscape communicator 4.08 |
||
netscape communicator 4.5 |
||
netscape communicator 4.5_beta |
||
netscape communicator 4.51 |
||
netscape communicator 4.04 |
||
netscape communicator 4.06 |
||
netscape communicator 4.61 |
||
netscape communicator 4.73 |