← Vulnerability feed

Vulnerability record · CVE-1999-0239 · published 1 January 1998

CVE-1999-0239: Netscape fasttrack server vulnerability

Netscape · Fasttrack Server

Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.

7.5 CVSS 3.1 High EPSS 7.6% · top 5.7% CWE-178 · CWE-178
7.5CVSS 3.1 base score, v2 5.0
7.6%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
3References
16 Jun 2026Last modified by NVD

Description

Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-1999-0239 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2000-0308Netscape enterprise server vulnerabilityInsecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an att…EPSS 2.2%10.0CVE-1999-0853Netscape enterprise server vulnerabilityBuffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authenticat…EPSS 3.4%7.5CVE-1999-0744Netscape enterprise server vulnerabilityBuffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.EPSS 2.5%7.0CVE-1999-0012Microsoft frontpage authentication bypass by spoofing vulnerabilitySome web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.EPSS 19%5.0CVE-2001-0175Netscape fasttrack server vulnerabilityThe caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large …EPSS 2.5%5.0CVE-1999-0758Netscape enterprise server vulnerabilityNetscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL.EPSS 1.9%5.0CVE-1999-0007C2net stonghold web server broken cryptographic algorithm vulnerabilityInformation from SSL-encrypted sessions via PKCS #1.EPSS 7.6%9.8CVE-2020-12812FortiOS SSL VPN two-factor authentication bypass via username case changeFortiOS SSL VPN fails to enforce the second authentication factor (FortiToken) when a user alters the letter case of their username. Because the user…KEVEPSS 49%analysed

Source: NIST National Vulnerability Database (record CVE-1999-0239), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.