本页列出影响 netscape directory_server 的已公开 CVE 漏洞(通过 NVD CPE 关联)。每行包含严重程度评分、摘要与发布日期,便于识别与分析安全问题。
| CVE | 摘要 | 来源 | 最高 CVSS | EPSS % | 公开时间 | 更新时间 |
|---|---|---|---|---|---|---|
| CVE-2004-1236 | Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute arbitrary code. | [email protected] | 10.0 | 8.85% | 2004-12-31 | 2026-06-16 |
| CVE-2004-0826 | Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message. | [email protected] | 7.5 | 22.53% | 2004-12-31 | 2026-06-16 |
| CVE-2001-0164 | Buffer overflow in Netscape Directory Server 4.12 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed recipient field. | [email protected] | 7.5 | 2.17% | 2001-06-02 | 2026-06-16 |
| CVE-2000-1076 | Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server. | [email protected] | 10.0 | 1.58% | 2000-12-11 | 2026-06-16 |
| CVE-2000-1075 | Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services. | [email protected] | 5.0 | 6.02% | 2000-12-11 | 2026-06-16 |
| CVE-1999-0807 | The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users. | [email protected] | 7.2 | 0.40% | 1999-05-01 | 2026-06-16 |
| CVE-1999-0007 | Information from SSL-encrypted sessions via PKCS #1. | [email protected] | 5.0 | 7.64% | 1998-06-26 | 2026-06-16 |