Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-1999-0373 | 1 Debian | 1 Debian Linux | 2022-08-17 | 7.2 HIGH | N/A |
Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root. | |||||
CVE-1999-0459 | 2022-08-17 | 4.6 MEDIUM | N/A | ||
Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot. | |||||
CVE-1999-0352 | 2022-08-17 | 7.2 HIGH | N/A | ||
ControlIT 4.5 and earlier (aka Remotely Possible) has weak password encryption. | |||||
CVE-1999-0356 | 2022-08-17 | 10.0 HIGH | N/A | ||
ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book. | |||||
CVE-1999-0357 | 1 Microsoft | 1 Windows 98 | 2022-08-17 | 5.0 MEDIUM | N/A |
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets. | |||||
CVE-1999-0392 | 1 Thomas Boutell | 1 Cgic Library | 2022-08-17 | 5.0 MEDIUM | N/A |
Buffer overflow in Thomas Boutell's cgic library version up to 1.05. | |||||
CVE-1999-0402 | 1 Gnu | 1 Wget | 2022-08-17 | 5.0 MEDIUM | N/A |
wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself. | |||||
CVE-1999-0286 | 2022-08-17 | 10.0 HIGH | N/A | ||
In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages. | |||||
CVE-1999-0355 | 1 Broadcom | 1 Controlit | 2022-08-17 | 5.0 MEDIUM | N/A |
Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service. | |||||
CVE-1999-0361 | 2022-08-17 | 10.0 HIGH | N/A | ||
NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logging. | |||||
CVE-1999-0397 | 2022-08-17 | 10.0 HIGH | N/A | ||
The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext. | |||||
CVE-1999-0398 | 1 Ssh | 2 Ssh, Ssh2 | 2022-08-17 | 4.6 MEDIUM | N/A |
In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login. | |||||
CVE-1999-0399 | 1 Khaled Mardam-bey | 1 Mirc | 2022-08-17 | 7.5 HIGH | N/A |
The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attackers to place a malicious file in a different location, possibly allowing the attacker to execute commands. | |||||
CVE-1999-0401 | 1 Linux | 1 Linux Kernel | 2022-08-17 | 3.7 LOW | N/A |
A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files. | |||||
CVE-1999-0448 | 1 Microsoft | 1 Internet Information Server | 2022-08-17 | 5.0 MEDIUM | N/A |
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request. | |||||
CVE-1999-0453 | 1 Cisco | 1 Router | 2022-08-17 | 5.0 MEDIUM | N/A |
An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol (CDP). | |||||
CVE-1999-0465 | 2022-08-17 | 10.0 HIGH | N/A | ||
Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter. | |||||
CVE-1999-0497 | 2022-08-17 | 0.0 LOW | N/A | ||
Anonymous FTP is enabled. | |||||
CVE-1999-0512 | 2022-08-17 | 10.0 HIGH | N/A | ||
A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers. | |||||
CVE-1999-0515 | 2022-08-17 | 10.0 HIGH | N/A | ||
An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv. |