CNCVE编号:CNCVE-20010745 CVE编号:CAN-2001-0745 安全级别:中 漏洞中文描述: Netscape 4.7x 允许远程攻击者通过能访问document.referrer性质中mailbox: URL的Javascript来获得诸如用户登录,邮箱位置和安装路径等敏感信息。 漏洞英文描述: Netscape 4.7x allows remote attackers to obtain sensitive information such as the user's login, mailbox location and installation path via Javascript that accesses the mailbox: URL in the document.referrer property. 漏洞参考: Reference: BUGTRAQ:20010605 SECURITY.NNOV: Netscape 4.7x Messanger user information retrival Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-06/0014.html 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误