CVE-2000-1187

6 documents6 sources
Severity
7.5HIGH
EPSS
1.4%
top 19.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 9
Latest updateMay 3

Description

Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rwpw-3689-qgwh: Buffer overflow in the HTML parser for Netscape 42022-05-03
CVEList
CVE-2000-1187: Buffer overflow in the HTML parser for Netscape 42001-01-22

💥Exploits & PoCs

1
Exploit-DB
Matt Wright FormMail 1.6/1.7/1.8 - Environmental Variables Disclosure2000-05-10

📋Vendor Advisories

1
Red Hat
security flaw2000-11-27

💬Community

1
Bugzilla
CVE-2000-1187 security flaw2018-08-16
CVE-2000-1187 (HIGH CVSS 7.5) | Buffer overflow in the HTML parser | cvebase.io