Search
Total
86024 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-1999-0695 | 1 Sybase | 1 Powerdynamo | 2008-09-09 | 5.0 MEDIUM | N/A |
| The Sybase PowerDynamo personal web server allows attackers to read arbitrary files through a .. (dot dot) attack. | |||||
| CVE-1999-0694 | 1 Ibm | 1 Aix | 2008-09-09 | 2.1 LOW | N/A |
| Denial of service in AIX ptrace system call allows local users to crash the system. | |||||
| CVE-1999-0526 | 1 X.org | 1 X11 | 2008-09-09 | 10.0 HIGH | N/A |
| An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server. | |||||
| CVE-1999-0470 | 1 Novell | 1 Netware | 2008-09-09 | 5.0 MEDIUM | N/A |
| A weak encryption algorithm is used for passwords in Novell Remote.NLM, allowing them to be easily decrypted. | |||||
| CVE-1999-0471 | 1 Winroute | 1 Winroute | 2008-09-09 | 5.0 MEDIUM | N/A |
| The remote proxy server in Winroute allows a remote attacker to reconfigure the proxy without authentication through the "cancel" button. | |||||
| CVE-1999-0472 | 2 Network Appliance, Snmp | 2 Netcache, Snmp | 2008-09-09 | 5.0 MEDIUM | N/A |
| The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it. | |||||
| CVE-1999-0244 | 1 Livingston | 1 Radius | 2008-09-09 | 7.5 HIGH | N/A |
| Livingston RADIUS code has a buffer overflow which can allow remote execution of commands as root. | |||||
| CVE-1999-0473 | 1 Andrew Tridgell | 1 Rsync | 2008-09-09 | 2.1 LOW | N/A |
| The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred. | |||||
| CVE-1999-0503 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 7.2 HIGH | N/A |
| A Windows NT local user or administrator account has a guessable password. | |||||
| CVE-1999-0389 | 1 Debian | 1 Debian Linux | 2008-09-09 | 7.2 HIGH | N/A |
| Buffer overflow in the bootp server in the Debian Linux netstd package. | |||||
| CVE-1999-0388 | 1 Datalynx | 1 Suguard | 2008-09-09 | 4.6 MEDIUM | N/A |
| DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute commands as root. | |||||
| CVE-1999-0383 | 1 Acc | 1 Tigris | 2008-09-09 | 7.5 HIGH | N/A |
| ACC Tigris allows public access without a login. | |||||
| CVE-1999-0504 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 7.5 HIGH | N/A |
| A Windows NT local user or administrator account has a default, null, blank, or missing password. | |||||
| CVE-1999-0378 | 1 Trend Micro | 1 Interscan Viruswall | 2008-09-09 | 5.0 MEDIUM | N/A |
| InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands. | |||||
| CVE-1999-0287 | 1 Webcom | 1 Cgi Guestbook | 2008-09-09 | 7.5 HIGH | N/A |
| Vulnerability in the Wguest CGI program. | |||||
| CVE-1999-0217 | 1 Sun | 1 Sunos | 2008-09-09 | 5.0 MEDIUM | N/A |
| Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems. | |||||
| CVE-1999-0534 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 4.6 MEDIUM | N/A |
| A Windows NT user has inappropriate rights or privileges, e.g. Act as System, Add Workstation, Backup, Change System Time, Create Pagefile, Create Permanent Object, Create Token Name, Debug, Generate Security Audit, Increase Priority, Increase Quota, Load Driver, Lock Memory, Profile Single Process, Remote Shutdown, Replace Process Token, Restore, System Environment, Take Ownership, or Unsolicited Input. | |||||
| CVE-1999-0408 | 1 Sun | 1 Cobalt Raq | 2008-09-09 | 10.0 HIGH | N/A |
| Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server. | |||||
| CVE-1999-0449 | 1 Microsoft | 1 Internet Information Server | 2008-09-09 | 7.8 HIGH | N/A |
| The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts. | |||||
| CVE-1999-0375 | 1 Network Flight Recorder | 1 Network Flight Recorder | 2008-09-09 | 7.5 HIGH | N/A |
| Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands. | |||||
| CVE-1999-0274 | 1 Microsoft | 1 Windows Nt | 2008-09-09 | 5.0 MEDIUM | N/A |
| Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't made. | |||||
| CVE-1999-0448 | 1 Microsoft | 1 Internet Information Server | 2008-09-09 | 5.0 MEDIUM | N/A |
| IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request. | |||||
| CVE-1999-0505 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 7.2 HIGH | N/A |
| A Windows NT domain user or administrator account has a guessable password. | |||||
| CVE-1999-0207 | 1 Great Circle Associates | 1 Majordomo | 2008-09-09 | 7.5 HIGH | N/A |
| Remote attacker can execute commands through Majordomo using the Reply-To field and a "lists" command. | |||||
| CVE-1999-0506 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 7.2 HIGH | N/A |
| A Windows NT domain user or administrator account has a default, null, blank, or missing password. | |||||
| CVE-1999-0507 | 2008-09-09 | 7.5 HIGH | N/A | ||
| An account on a router, firewall, or other network device has a guessable password. | |||||
| CVE-1999-0330 | 1 Linux | 1 Linux Kernel | 2008-09-09 | 7.2 HIGH | N/A |
| Linux bdash game has a buffer overflow that allows local users to gain root access. | |||||
| CVE-1999-0508 | 2008-09-09 | 4.6 MEDIUM | N/A | ||
| An account on a router, firewall, or other network device has a default, null, blank, or missing password. | |||||
| CVE-1999-0446 | 1 Netbsd | 1 Netbsd | 2008-09-09 | 2.1 LOW | N/A |
| Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS. | |||||
| CVE-1999-0445 | 1 Cisco | 1 Ios | 2008-09-09 | 5.0 MEDIUM | N/A |
| In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filters. | |||||
| CVE-1999-0510 | 2008-09-09 | 7.5 HIGH | N/A | ||
| A router or firewall allows source routed packets from arbitrary hosts. | |||||
| CVE-1999-0511 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2008-09-09 | 7.5 HIGH | N/A |
| IP forwarding is enabled on a machine which is not a router or firewall. | |||||
| CVE-1999-0444 | 1 Microsoft | 3 Windows 95, Windows 98, Windows Nt | 2008-09-09 | 5.0 MEDIUM | N/A |
| Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files. | |||||
| CVE-1999-0443 | 1 Bmc | 1 Patrol Agent | 2008-09-09 | 10.0 HIGH | N/A |
| Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password. | |||||
| CVE-1999-0409 | 1 Suse | 1 Suse Linux | 2008-09-09 | 4.6 MEDIUM | N/A |
| Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access. | |||||
| CVE-1999-0441 | 1 Qbik | 1 Wingate | 2008-09-09 | 5.0 MEDIUM | N/A |
| Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service. | |||||
| CVE-1999-0431 | 1 Linux | 1 Linux Kernel | 2008-09-09 | 5.0 MEDIUM | N/A |
| Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service. | |||||
| CVE-1999-0430 | 1 Cisco | 3 Catalyst 12xx Supervisor Software, Catalyst 29xx Supervisor Software, Catalyst 5xxx Supervisor Software | 2008-09-09 | 5.0 MEDIUM | N/A |
| Cisco Catalyst LAN switches running Catalyst 5000 supervisor software allows remote attackers to perform a denial of service by forcing the supervisor module to reload. | |||||
| CVE-1999-0333 | 1 Hp | 1 Hp-ux | 2008-09-09 | 7.5 HIGH | N/A |
| HP OpenView Omniback allows remote execution of commands as root via spoofing, and local users can gain root access via a symlink attack. | |||||
| CVE-1999-0335 | 2 Bsdi, Linux | 2 Bsd Os, Linux Kernel | 2008-09-09 | 7.2 HIGH | N/A |
| DEPRECATED. This entry has been deprecated. It is a duplicate of CVE-1999-0032. | |||||
| CVE-1999-0279 | 1 Excite | 1 Ews | 2008-09-09 | 7.5 HIGH | N/A |
| Excite for Web Servers (EWS) allows remote command execution via shell metacharacters. | |||||
| CVE-1999-0416 | 1 Cisco | 1 Cisco 7xx Routers | 2008-09-09 | 5.0 MEDIUM | N/A |
| Vulnerability in Cisco 7xx series routers allows a remote attacker to cause a system reload via a TCP connection to the router's TELNET port. | |||||
| CVE-1999-0374 | 1 Debian | 1 Debian Linux | 2008-09-09 | 2.1 LOW | N/A |
| Debian GNU/Linux cfengine package is susceptible to a symlink attack. | |||||
| CVE-1999-0206 | 1 Eric Allman | 1 Sendmail | 2008-09-09 | 10.0 HIGH | N/A |
| MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root access. | |||||
| CVE-1999-0415 | 1 Cisco | 1 Cisco 7xx Routers | 2008-09-09 | 7.5 HIGH | N/A |
| The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to change the router's configuration. | |||||
| CVE-1999-0205 | 1 Eric Allman | 1 Sendmail | 2008-09-09 | 5.0 MEDIUM | N/A |
| Denial of service in Sendmail 8.6.11 and 8.6.12. | |||||
| CVE-1999-0414 | 1 Linux | 1 Linux Kernel | 2008-09-09 | 5.0 MEDIUM | N/A |
| In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection. | |||||
| CVE-1999-0204 | 1 Eric Allman | 1 Sendmail | 2008-09-09 | 10.0 HIGH | N/A |
| Sendmail 8.6.9 allows remote attackers to execute root commands, using ident. | |||||
| CVE-1999-0514 | 2008-09-09 | 5.0 MEDIUM | N/A | ||
| UDP messages to broadcast addresses are allowed, allowing for a Fraggle attack that can cause a denial of service by flooding the target. | |||||
| CVE-1999-0521 | 2008-09-09 | 7.2 HIGH | N/A | ||
| An NIS domain name is easily guessable. | |||||
