5
CVSSv2

CVE-2002-0354

Published: 25/06/2002 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote malicious users to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the result using the responseText property.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla mozilla 1.0

netscape navigator 6.2

netscape navigator 6.1

mozilla mozilla 0.9.7

mozilla mozilla 0.9.9