Search
Total
86024 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-1999-0890 | 1 Ihtml Merchant | 1 Ihtml Merchant | 2008-09-09 | 7.5 HIGH | N/A |
| iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error. | |||||
| CVE-1999-0892 | 1 Netscape | 1 Communicator | 2008-09-09 | 4.6 MEDIUM | N/A |
| Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font. | |||||
| CVE-1999-1101 | 1 Kab Software | 1 Lydia | 2008-09-09 | 4.6 MEDIUM | N/A |
| Kabsoftware Lydia utility uses weak encryption to store user passwords in the lydia.ini file, which allows local users to easily decrypt the passwords and gain privileges. | |||||
| CVE-1999-0893 | 1 Sco | 1 Openserver | 2008-09-09 | 2.1 LOW | N/A |
| userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack. | |||||
| CVE-1999-0895 | 1 Checkpoint | 1 Firewall-1 | 2008-09-09 | 7.5 HIGH | N/A |
| Firewall-1 does not properly restrict access to LDAP attributes. | |||||
| CVE-1999-0896 | 1 Realnetworks | 1 Realserver G2 | 2008-09-09 | 10.0 HIGH | N/A |
| Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands via a long username and password. | |||||
| CVE-1999-0900 | 1 Linux-nis | 1 Rpc.yppasswdd | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in rpc.yppasswdd allows a local user to gain privileges via MD5 hash generation. | |||||
| CVE-1999-0901 | 1 Linux-nis | 1 Ypserv | 2008-09-09 | 7.2 HIGH | N/A |
| ypserv allows a local user to modify the GECOS and login shells of other users. | |||||
| CVE-1999-0902 | 1 Linux-nis | 1 Ypserv | 2008-09-09 | 7.2 HIGH | N/A |
| ypserv allows local administrators to modify password tables. | |||||
| CVE-1999-0903 | 1 Ibm | 1 Aix | 2008-09-09 | 7.5 HIGH | N/A |
| genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767. | |||||
| CVE-1999-0914 | 1 Debian | 1 Debian Linux | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in the FTP client in the Debian GNU/Linux netstd package. | |||||
| CVE-1999-1074 | 1 Webmin | 1 Webmin | 2008-09-09 | 7.5 HIGH | N/A |
| Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking. | |||||
| CVE-1999-0915 | 1 Pacific Software | 1 Url Live | 2008-09-09 | 5.0 MEDIUM | N/A |
| URL Live! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |||||
| CVE-1999-0916 | 1 Webtrends | 5 Webtrends Enterprise Suite, Webtrends For Firewalls, Webtrends Log Analyzer and 2 more | 2008-09-09 | 2.1 LOW | N/A |
| WebTrends software stores account names and passwords in a file which does not have restricted access permissions. | |||||
| CVE-1999-0998 | 1 Cisco | 1 Cache Engine | 2008-09-09 | 5.0 MEDIUM | N/A |
| Cisco Cache Engine allows an attacker to replace content in the cache. | |||||
| CVE-1999-0942 | 1 Sco | 1 Unixware | 2008-09-09 | 7.2 HIGH | N/A |
| UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes. | |||||
| CVE-1999-0927 | 1 Gordano | 1 Ntmail | 2008-09-09 | 5.0 MEDIUM | N/A |
| NTMail allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |||||
| CVE-1999-0932 | 1 Mediahouse Software | 1 Statistics Server | 2008-09-09 | 7.2 HIGH | N/A |
| Mediahouse Statistics Server allows remote attackers to read the administrator password, which is stored in cleartext in the ss.cfg file. | |||||
| CVE-1999-0856 | 1 Slackware | 1 Slackware Linux | 2008-09-09 | 5.0 MEDIUM | N/A |
| login in Slackware 7.0 allows remote attackers to identify valid users on the system by reporting an encryption error when an account is locked or does not exist. | |||||
| CVE-1999-0920 | 1 University Of Washington | 2 Imap, Pop2d | 2008-09-09 | 10.0 HIGH | N/A |
| Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command. | |||||
| CVE-1999-0857 | 1 Freebsd | 1 Freebsd | 2008-09-09 | 2.1 LOW | N/A |
| FreeBSD gdc program allows local users to modify files via a symlink attack. | |||||
| CVE-1999-0838 | 1 Deerfield | 1 Serv-u Ftp-server | 2008-09-09 | 5.0 MEDIUM | N/A |
| Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command. | |||||
| CVE-1999-0836 | 1 Sco | 1 Unixware | 2008-09-09 | 10.0 HIGH | N/A |
| UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack. | |||||
| CVE-1999-0822 | 1 Qualcomm | 1 Qpopper | 2008-09-09 | 10.0 HIGH | N/A |
| Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command. | |||||
| CVE-1999-0821 | 1 Freebsd | 1 Freebsd | 2008-09-09 | 4.6 MEDIUM | N/A |
| FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument. | |||||
| CVE-1999-1056 | 2008-09-09 | N/A | N/A | ||
| ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1395. Reason: This candidate is a duplicate of CVE-1999-1395. Notes: All CVE users should reference CVE-1999-1395 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | |||||
| CVE-1999-1009 | 1 Disney | 1 Go Express Search | 2008-09-09 | 2.6 LOW | N/A |
| The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system. | |||||
| CVE-1999-1004 | 1 Symantec | 1 Norton Antivirus | 2008-09-09 | 5.0 MEDIUM | N/A |
| Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command. | |||||
| CVE-1999-1003 | 1 Jgaa | 1 Warftpd | 2008-09-09 | 5.0 MEDIUM | N/A |
| War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections. | |||||
| CVE-1999-1001 | 1 Cisco | 1 Cache Engine | 2008-09-09 | 2.6 LOW | N/A |
| Cisco Cache Engine allows a remote attacker to gain access via a null username and password. | |||||
| CVE-1999-0988 | 1 Sco | 1 Unixware | 2008-09-09 | 7.2 HIGH | N/A |
| UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack. | |||||
| CVE-1999-0986 | 3 Debian, Linux, Redhat | 3 Debian Linux, Linux Kernel, Linux | 2008-09-09 | 5.0 MEDIUM | N/A |
| The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. | |||||
| CVE-1999-0985 | 1 Cc | 1 Cc Whois | 2008-09-09 | 7.5 HIGH | N/A |
| CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry. | |||||
| CVE-1999-0965 | 1 X.org | 1 Xterm | 2008-09-09 | 6.2 MEDIUM | N/A |
| Race condition in xterm allows local users to modify arbitrary files via the logging option. | |||||
| CVE-1999-0964 | 1 Freebsd | 1 Freebsd | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable. | |||||
| CVE-1999-0963 | 1 Freebsd | 1 Freebsd | 2008-09-09 | 7.2 HIGH | N/A |
| FreeBSD mount_union command allows local users to gain root privileges via a symlink attack. | |||||
| CVE-1999-0954 | 1 Matt Wright | 1 Wwwboard | 2008-09-09 | 7.5 HIGH | N/A |
| WWWBoard has a default username and default password. | |||||
| CVE-1999-0953 | 1 Matt Wright | 1 Wwwboard | 2008-09-09 | 10.0 HIGH | N/A |
| WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers. | |||||
| CVE-1999-0951 | 1 Omnicron | 1 Omnihttpd | 2008-09-09 | 10.0 HIGH | N/A |
| Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands. | |||||
| CVE-1999-0922 | 1 Allaire | 1 Coldfusion Server | 2008-09-09 | 5.0 MEDIUM | N/A |
| An example application in ColdFusion Server 4.0 allows remote attackers to view source code via the sourcewindow.cfm file. | |||||
| CVE-1999-0921 | 1 Bmc | 1 Patrol Agent | 2008-09-09 | 5.0 MEDIUM | N/A |
| BMC Patrol allows any remote attacker to flood its UDP port, causing a denial of service. | |||||
| CVE-1999-0828 | 1 Sco | 1 Unixware | 2008-09-09 | 3.6 LOW | N/A |
| UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission. | |||||
| CVE-1999-0971 | 1 University Of Cambridge | 1 Exim | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in Exim allows local users to gain root privileges via a long :include: option in a .forward file. | |||||
| CVE-1999-0911 | 1 Proftpd Project | 1 Proftpd | 2008-09-09 | 10.0 HIGH | N/A |
| Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories. | |||||
| CVE-1999-0972 | 1 Wolfpack Development | 1 Xshipwars | 2008-09-09 | 7.5 HIGH | N/A |
| Buffer overflow in Xshipwars xsw program. | |||||
| CVE-1999-0904 | 1 Byte Fusion | 1 Bftelnet | 2008-09-09 | 5.0 MEDIUM | N/A |
| Buffer overflow in BFTelnet allows remote attackers to cause a denial of service via a long username. | |||||
| CVE-1999-0978 | 1 Debian | 1 Debian Linux | 2008-09-09 | 7.5 HIGH | N/A |
| htdig allows remote attackers to execute commands via filenames with shell metacharacters. | |||||
| CVE-1999-0996 | 1 Infoseek | 1 Ultraseek Server | 2008-09-09 | 7.5 HIGH | N/A |
| Buffer overflow in Infoseek Ultraseek search engine allows remote attackers to execute commands via a long GET request. | |||||
| CVE-1999-0830 | 1 Sco | 1 Unixware | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in SCO UnixWare Xsco command via a long argument. | |||||
| CVE-1999-1039 | 1 Sgi | 1 Irix | 2008-09-09 | 7.2 HIGH | N/A |
| Vulnerability in (1) diskalign and (2) diskperf in IRIX 6.4 patches 2291 and 2848 allow a local user to create root-owned files leading to a root compromise. | |||||
