Vulnerability Details CVE-2000-0711
Netscape Communicator does not properly prevent a ServerSocket object from being created by untrusted entities, which allows remote attackers to create a server on the victim's system via a malicious applet, as demonstrated by Brown Orifice.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.0%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2000-0711
-
cpe:2.3:a:microsoft:virtual_machine:2000
-
cpe:2.3:a:microsoft:virtual_machine:3100
-
cpe:2.3:a:microsoft:virtual_machine:3200
-
cpe:2.3:a:microsoft:virtual_machine:3300
-
cpe:2.3:a:netscape:communicator:4.0
-
cpe:2.3:a:netscape:communicator:4.04
-
cpe:2.3:a:netscape:communicator:4.05
-
cpe:2.3:a:netscape:communicator:4.06
-
cpe:2.3:a:netscape:communicator:4.07
-
cpe:2.3:a:netscape:communicator:4.08
-
cpe:2.3:a:netscape:communicator:4.5
-
cpe:2.3:a:netscape:communicator:4.51
-
cpe:2.3:a:netscape:communicator:4.6
-
cpe:2.3:a:netscape:communicator:4.61
-
cpe:2.3:a:netscape:communicator:4.7
-
cpe:2.3:a:netscape:communicator:4.72
-
cpe:2.3:a:netscape:communicator:4.73
-
cpe:2.3:a:netscape:communicator:4.74