CVE-2000-0087

3 documents3 sources
Severity
5.0MEDIUM
EPSS
0.8%
top 25.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 12
Latest updateApr 30

Description

Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator to use an SSL connection, allowing a remote attacker to sniff usernames and passwords in plaintext.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-2pg3-3pf8-92c8: Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator t2022-04-30
CVEList
CVE-2000-0087: Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a preference for Communicator t2002-06-25
CVE-2000-0087 (MEDIUM CVSS 5) | Netscape Mail Notification (nsnotif | cvebase.io