
5/10/1999

12/9/2001

20/11/2024
CVE-1999-1357
First published: Tue Oct 05 1999(Updated: )
Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|
Netscape Communicator | =4.04 | |
Netscape Communicator | =4.51 | |
Netscape Communicator | <=4.7 | |
| <=4.7 | |
| =4.04 | |
| =4.51 | |
Never miss a vulnerability like this again
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
Frequently Asked Questions
What is the severity of CVE-1999-1357?
CVE-1999-1357 has been classified as a moderate severity vulnerability.
What does CVE-1999-1357 affect?
CVE-1999-1357 affects Netscape Communicator versions 4.04 through 4.7 on various UNIX operating systems.
How do I fix CVE-1999-1357?
To mitigate CVE-1999-1357, upgrade to a version of Netscape Communicator that is beyond 4.7.
What types of attacks can CVE-1999-1357 enable?
CVE-1999-1357 can allow remote attackers to exploit cross-site scripting vulnerabilities in CGI programs.
Is CVE-1999-1357 present in Netscape Communicator 4.8?
No, CVE-1999-1357 is not present in Netscape Communicator 4.8 or any later versions.
- collector/nvd-historical
- collector/nvd-index
- agent/type
- agent/first-publish-date
- collector/mitre-cve
- source/MITRE
- agent/weakness
- agent/references
- agent/severity
- agent/description
- collector/nvd-api
- source/NVD
- agent/software-canonical-lookup
- agent/last-modified-date
- agent/author
- agent/softwarecombine
- agent/event
- agent/tags
- agent/source
- vendor/netscape
- canonical/netscape communicator
- version/netscape communicator/4.04
- version/netscape communicator/4.51
- version/netscape communicator/4.7
Contact
SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.coBy using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203