Total
27865 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-1999-0585 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2022-08-17 | 2.1 LOW | N/A |
A Windows NT administrator account has the default name of Administrator. | |||||
CVE-1999-0587 | 2022-08-17 | 10.0 HIGH | N/A | ||
A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data. | |||||
CVE-1999-0581 | 1 Microsoft | 1 Windows Nt | 2022-08-17 | 10.0 HIGH | N/A |
The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions. | |||||
CVE-1999-0580 | 2022-08-17 | 10.0 HIGH | N/A | ||
The HKEY_LOCAL_MACHINE key in a Windows NT system has inappropriate, system-critical permissions. | |||||
CVE-1999-0575 | 1 Microsoft | 1 Windows Nt | 2022-08-17 | 7.5 HIGH | N/A |
A Windows NT system's user audit policy does not log an event success or failure, e.g. for Logon and Logoff, File and Object Access, Use of User Rights, User and Group Management, Security Policy Changes, Restart, Shutdown, and System, and Process Tracking. | |||||
CVE-1999-0577 | 1 Microsoft | 1 Windows Nt | 2022-08-17 | 10.0 HIGH | N/A |
A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories. | |||||
CVE-1999-0983 | 1 Internic | 1 Whois Lookup | 2022-08-17 | 7.5 HIGH | N/A |
Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry. | |||||
CVE-1999-0569 | 2022-08-17 | 10.0 HIGH | N/A | ||
A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file. | |||||
CVE-1999-0561 | 2022-08-17 | 10.0 HIGH | N/A | ||
IIS has the #exec function enabled for Server Side Include (SSI) files. | |||||
CVE-1999-0559 | 2022-08-17 | 10.0 HIGH | N/A | ||
A system-critical Unix file or directory has inappropriate permissions. | |||||
CVE-1999-0550 | 2022-08-17 | 7.5 HIGH | N/A | ||
A router's routing tables can be obtained from arbitrary hosts. | |||||
CVE-2003-0769 | 1 Mirabilis | 1 Icq | 2022-08-17 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in the ICQ Web Front guestbook (guestbook.html) allows remote attackers to insert arbitrary web script and HTML via the message field. | |||||
CVE-1999-0903 | 1 Ibm | 1 Aix | 2022-08-17 | 7.5 HIGH | N/A |
genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767. | |||||
CVE-1999-0940 | 1 Mutt | 1 Mutt Mail Client | 2022-08-17 | 7.5 HIGH | N/A |
Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages. | |||||
CVE-1999-0541 | 2022-08-17 | 7.5 HIGH | N/A | ||
A password for accessing a WWW URL is guessable. | |||||
CVE-2000-0106 | 1 Easycart | 1 Easycart | 2022-08-17 | 7.5 HIGH | N/A |
The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields. | |||||
CVE-1999-0546 | 1 Microsoft | 1 Windows Nt | 2022-08-17 | 4.6 MEDIUM | N/A |
The Windows NT guest account is enabled. | |||||
CVE-2000-0220 | 1 Zonelabs | 1 Zonealarm | 2022-08-17 | 5.0 MEDIUM | N/A |
ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more information about an event. | |||||
CVE-2000-0093 | 1 Redhat | 1 Linux | 2022-08-17 | 10.0 HIGH | N/A |
An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5. | |||||
CVE-1999-0252 | 1 Lsoft | 1 Listserv | 2022-08-17 | 7.5 HIGH | N/A |
Buffer overflow in listserv allows arbitrary command execution. |