First published: Wed Dec 31 2003(Updated: )
Netscape 7.0 and Mozilla 5.0 do not immediately delete messages in the trash folder when users select the 'Empty Trash' option, which could allow local users to access deleted messages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Mozilla | =5.0 | |
Netscape Navigator | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2003-1265 is typically considered medium due to the potential for local access to deleted messages.
To fix CVE-2003-1265, upgrade to a more recent version of Netscape or Mozilla that addresses this vulnerability.
CVE-2003-1265 affects users of Netscape 7.0 and Mozilla 5.0 software.
CVE-2003-1265 is a local information disclosure vulnerability.
CVE-2003-1265 cannot be exploited remotely as it requires local access to the affected software.