Vulnerability Details CVE-2000-0406
Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the "Acros-Suencksen SSL" vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 72.0%
CVSS Severity
CVSS v2 Score 2.6
Products affected by CVE-2000-0406
-
cpe:2.3:a:netscape:communicator:4.0
-
cpe:2.3:a:netscape:communicator:4.05
-
cpe:2.3:a:netscape:communicator:4.06
-
cpe:2.3:a:netscape:communicator:4.07
-
cpe:2.3:a:netscape:communicator:4.5
-
cpe:2.3:a:netscape:communicator:4.51
-
cpe:2.3:a:netscape:communicator:4.5_beta
-
cpe:2.3:a:netscape:communicator:4.6
-
cpe:2.3:a:netscape:communicator:4.61
-
cpe:2.3:a:netscape:communicator:4.7
-
cpe:2.3:a:netscape:communicator:4.72