CVE Database
Structured vulnerability intelligence: severity, affected software, and remediation.
- CVE-2021-44228 CRITICAL — CVE-2021-44228: Apache Log4j2 Remote Code Execution (Log4Shell)
- CVE-2017-0144 CRITICAL — CVE-2017-0144: Microsoft Windows SMB Remote Code Execution (EternalBlue)
- CVE-1999-0001 UNKNOWN — CVE-1999-0001: ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) vi
- CVE-1999-0003 UNKNOWN — CVE-1999-0003: Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
- CVE-1999-0004 UNKNOWN — CVE-1999-0004: MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
- CVE-1999-0006 UNKNOWN — CVE-1999-0006: Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
- CVE-1999-0005 UNKNOWN — CVE-1999-0005: Arbitrary command execution via IMAP buffer overflow in authenticate command.
- CVE-1999-0008 UNKNOWN — CVE-1999-0008: Buffer overflow in NIS+, in Sun's rpc.nisd program.
- CVE-1999-0007 UNKNOWN — CVE-1999-0007: Information from SSL-encrypted sessions via PKCS #1.
- CVE-1999-0009 UNKNOWN — CVE-1999-0009: Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
- CVE-1999-0002 UNKNOWN — CVE-1999-0002: Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
- CVE-1999-0010 UNKNOWN — CVE-1999-0010: Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
- CVE-1999-0011 UNKNOWN — CVE-1999-0011: Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
- CVE-1999-0012 UNKNOWN — CVE-1999-0012: Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file n
- CVE-1999-0013 UNKNOWN — CVE-1999-0013: Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belongin
- CVE-1999-0014 UNKNOWN — CVE-1999-0014: Unauthorized privileged access or denial of service via dtappgather program in CDE.
- CVE-1999-0015 UNKNOWN — CVE-1999-0015: Teardrop IP denial of service.
- CVE-1999-0016 UNKNOWN — CVE-1999-0016: Land IP denial of service.
- CVE-1999-0019 UNKNOWN — CVE-1999-0019: Delete or create a file via rpc.statd, due to invalid information.
- CVE-1999-0020 UNKNOWN — CVE-1999-0020: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0032. Reason: This candidate is a duplicate of
- CVE-1999-0018 UNKNOWN — CVE-1999-0018: Buffer overflow in statd allows root privileges.
- CVE-1999-0017 UNKNOWN — CVE-1999-0017: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
- CVE-1999-0021 UNKNOWN — CVE-1999-0021: Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program.
- CVE-1999-0025 UNKNOWN — CVE-1999-0025: root privileges via buffer overflow in df command on SGI IRIX systems.
- CVE-1999-0024 UNKNOWN — CVE-1999-0024: DNS cache poisoning via BIND, by predictable query IDs.
- CVE-1999-0022 UNKNOWN — CVE-1999-0022: Local user gains root privileges via buffer overflow in rdist, via expstr() function.
- CVE-1999-0026 UNKNOWN — CVE-1999-0026: root privileges via buffer overflow in pset command on SGI IRIX systems.
- CVE-1999-0023 UNKNOWN — CVE-1999-0023: Local user gains root privileges via buffer overflow in rdist, via lookup() function.
- CVE-1999-0027 UNKNOWN — CVE-1999-0027: root privileges via buffer overflow in eject command on SGI IRIX systems.
- CVE-1999-0028 UNKNOWN — CVE-1999-0028: root privileges via buffer overflow in login/scheme command on SGI IRIX systems.
- CVE-1999-0029 UNKNOWN — CVE-1999-0029: root privileges via buffer overflow in ordist command on SGI IRIX systems.
- CVE-1999-0030 UNKNOWN — CVE-1999-0030: root privileges via buffer overflow in xlock command on SGI IRIX systems.
- CVE-1999-0031 UNKNOWN — CVE-1999-0031: JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's
- CVE-1999-0032 UNKNOWN — CVE-1999-0032: Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as ro
- CVE-1999-0033 UNKNOWN — CVE-1999-0033: Command execution in Sun systems via buffer overflow in the at program.
- CVE-1999-0036 UNKNOWN — CVE-1999-0036: IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
- CVE-1999-0034 UNKNOWN — CVE-1999-0034: Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
- CVE-1999-0038 UNKNOWN — CVE-1999-0038: Buffer overflow in xlock program allows local users to execute commands as root.
- CVE-1999-0037 UNKNOWN — CVE-1999-0037: Arbitrary command execution via metamail package using message headers, when user processes attacker's message using met
- CVE-1999-0035 UNKNOWN — CVE-1999-0035: Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.
- CVE-1999-0039 UNKNOWN — CVE-1999-0039: webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharac
- CVE-1999-0040 UNKNOWN — CVE-1999-0040: Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
- CVE-1999-0042 UNKNOWN — CVE-1999-0042: Buffer overflow in University of Washington's implementation of IMAP and POP servers.
- CVE-1999-0041 UNKNOWN — CVE-1999-0041: Buffer overflow in NLS (Natural Language Service).
- CVE-1999-0045 UNKNOWN — CVE-1999-0045: List of arbitrary files on Web host via nph-test-cgi script.
- CVE-1999-0044 UNKNOWN — CVE-1999-0044: fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
- CVE-1999-0048 UNKNOWN — CVE-1999-0048: Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
- CVE-1999-0047 UNKNOWN — CVE-1999-0047: MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
- CVE-1999-0049 UNKNOWN — CVE-1999-0049: Csetup under IRIX allows arbitrary file creation or overwriting.
- CVE-1999-0046 UNKNOWN — CVE-1999-0046: Buffer overflow of rlogin program using TERM environmental variable.
- CVE-1999-0043 UNKNOWN — CVE-1999-0043: Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and othe
- CVE-1999-0050 UNKNOWN — CVE-1999-0050: Buffer overflow in HP-UX newgrp program.
- CVE-1999-0051 UNKNOWN — CVE-1999-0051: Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.
- CVE-1999-0052 UNKNOWN — CVE-1999-0052: IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash.
- CVE-1999-0054 UNKNOWN — CVE-1999-0054: Sun's ftpd daemon can be subjected to a denial of service.
- CVE-1999-0053 UNKNOWN — CVE-1999-0053: TCP RST denial of service in FreeBSD.
- CVE-1999-0057 UNKNOWN — CVE-1999-0057: Vacation program allows command execution by remote users through a sendmail command.
- CVE-1999-0055 UNKNOWN — CVE-1999-0055: Buffer overflows in Sun libnsl allow root access.
- CVE-1999-0056 UNKNOWN — CVE-1999-0056: Buffer overflow in Sun's ping program can give root access to local users.
- CVE-1999-0058 UNKNOWN — CVE-1999-0058: Buffer overflow in PHP cgi program, php.cgi allows shell access.
- CVE-1999-0059 UNKNOWN — CVE-1999-0059: IRIX fam service allows an attacker to obtain a list of all files on the server.
- CVE-1999-0060 UNKNOWN — CVE-1999-0060: Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port,
- CVE-1999-0061 UNKNOWN — CVE-1999-0061: File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).
- CVE-1999-0063 UNKNOWN — CVE-1999-0063: Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
- CVE-1999-0062 UNKNOWN — CVE-1999-0062: The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage.
- CVE-1999-0065 UNKNOWN — CVE-1999-0065: Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands.
- CVE-1999-0067 UNKNOWN — CVE-1999-0067: phf CGI program allows remote command execution through shell metacharacters.
- CVE-1999-0066 UNKNOWN — CVE-1999-0066: AnyForm CGI remote execution.
- CVE-1999-0064 UNKNOWN — CVE-1999-0064: Buffer overflow in AIX lquerylv program gives root access to local users.
- CVE-1999-0068 UNKNOWN — CVE-1999-0068: CGI PHP mylog script allows an attacker to read any file on the target server.
- CVE-1999-0069 UNKNOWN — CVE-1999-0069: Solaris ufsrestore buffer overflow.
- CVE-1999-0070 UNKNOWN — CVE-1999-0070: test-cgi program allows an attacker to list files on the server.
- CVE-1999-0071 UNKNOWN — CVE-1999-0071: Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.
- CVE-1999-0072 UNKNOWN — CVE-1999-0072: Buffer overflow in AIX xdat gives root access to local users.
- CVE-1999-0073 UNKNOWN — CVE-1999-0073: Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass
- CVE-1999-0074 UNKNOWN — CVE-1999-0074: Listening TCP ports are sequentially allocated, allowing spoofing attacks.
- CVE-1999-0076 UNKNOWN — CVE-1999-0076: Buffer overflow in wu-ftp from PASV command causes a core dump.
- CVE-1999-0077 UNKNOWN — CVE-1999-0077: Predictable TCP sequence numbers allow spoofing.
- CVE-1999-0075 UNKNOWN — CVE-1999-0075: PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password.
- CVE-1999-0078 UNKNOWN — CVE-1999-0078: pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments i
- CVE-1999-0079 UNKNOWN — CVE-1999-0079: Remote attackers can cause a denial of service in FTP by issuing multiple PASV commands, causing the server to run out o
- CVE-1999-0080 UNKNOWN — CVE-1999-0080: Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, suc
- CVE-1999-0081 UNKNOWN — CVE-1999-0081: wu-ftp allows files to be overwritten via the rnfr command.
- CVE-1999-0082 UNKNOWN — CVE-1999-0082: CWD ~root command in ftpd allows root access.
- CVE-1999-0083 UNKNOWN — CVE-1999-0083: getcwd() file descriptor leak in FTP.
- CVE-1999-0084 UNKNOWN — CVE-1999-0084: Certain NFS servers allow users to use mknod to gain privileges by creating a writable kmem device and setting the UID t
- CVE-1999-0088 UNKNOWN — CVE-1999-0088: IRIX and AIX automountd services (autofsd) allow remote users to execute root commands.
- CVE-1999-0087 UNKNOWN — CVE-1999-0087: Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
- CVE-1999-0086 UNKNOWN — CVE-1999-0086: AIX routed allows remote users to modify sensitive files.
- CVE-1999-0085 UNKNOWN — CVE-1999-0085: Buffer overflow in rwhod on AIX and other operating systems allows remote attackers to execute arbitrary code via a UDP
- CVE-1999-0090 UNKNOWN — CVE-1999-0090: Buffer overflow in AIX rcp command allows local users to obtain root access.
- CVE-1999-0089 UNKNOWN — CVE-1999-0089: Buffer overflow in AIX libDtSvc library can allow local users to gain root access.
- CVE-1999-0091 UNKNOWN — CVE-1999-0091: Buffer overflow in AIX writesrv command allows local users to obtain root access.
- CVE-1999-0092 UNKNOWN — CVE-1999-0092: Various vulnerabilities in the AIX portmir command allows local users to obtain root access.
- CVE-1999-0094 UNKNOWN — CVE-1999-0094: AIX piodmgrsu command allows local users to gain additional group privileges.
- CVE-1999-0093 UNKNOWN — CVE-1999-0093: AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
- CVE-1999-0096 UNKNOWN — CVE-1999-0096: Sendmail decode alias can be used to overwrite sensitive files.
- CVE-1999-0095 UNKNOWN — CVE-1999-0095: The debug command in Sendmail is enabled, allowing attackers to execute commands as root.
- CVE-1999-0097 UNKNOWN — CVE-1999-0097: The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe c
- CVE-1999-0098 UNKNOWN — CVE-1999-0098: Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
- CVE-1999-0099 UNKNOWN — CVE-1999-0099: Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
- CVE-1999-0100 UNKNOWN — CVE-1999-0100: Remote access in AIX innd 1.5.1, using control messages.
- CVE-1999-0102 UNKNOWN — CVE-1999-0102: Buffer overflow in SLmail 3.x allows attackers to execute commands using a large FROM line.
- CVE-1999-0104 UNKNOWN — CVE-1999-0104: A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.
- CVE-1999-0105 UNKNOWN — CVE-1999-0105: finger allows recursive searches by using a long string of @ symbols.
- CVE-1999-0103 UNKNOWN — CVE-1999-0103: Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or U
- CVE-1999-0101 UNKNOWN — CVE-1999-0101: Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
- CVE-1999-0106 UNKNOWN — CVE-1999-0106: Finger redirection allows finger bombs.
- CVE-1999-0107 UNKNOWN — CVE-1999-0107: Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of
- CVE-1999-0109 UNKNOWN — CVE-1999-0109: Buffer overflow in ffbconfig in Solaris 2.5.1.
- CVE-1999-0108 UNKNOWN — CVE-1999-0108: The printers program in IRIX has a buffer overflow that gives root access to local users.
- CVE-1999-0110 UNKNOWN — CVE-1999-0110: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0315. Reason: This candidate's original descri
- CVE-1999-0111 UNKNOWN — CVE-1999-0111: RIP v1 is susceptible to spoofing.
- CVE-1999-0113 UNKNOWN — CVE-1999-0113: Some implementations of rlogin allow root access if given a -froot parameter.
- CVE-1999-0114 UNKNOWN — CVE-1999-0114: Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-
- CVE-1999-0115 UNKNOWN — CVE-1999-0115: AIX bugfiler program allows local users to gain root access.
- CVE-1999-0117 UNKNOWN — CVE-1999-0117: AIX passwd allows local users to gain root access.
- CVE-1999-0116 UNKNOWN — CVE-1999-0116: Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to
- CVE-1999-0112 UNKNOWN — CVE-1999-0112: Buffer overflow in AIX dtterm program for the CDE.
- CVE-1999-0118 UNKNOWN — CVE-1999-0118: AIX infod allows local users to gain root access through an X display.
- CVE-1999-0119 UNKNOWN — CVE-1999-0119: Windows NT 4.0 beta allows users to read and delete shares.
- CVE-1999-0120 UNKNOWN — CVE-1999-0120: Sun/Solaris utmp file allows local users to gain root access if it is writable by users other than root.
- CVE-1999-0121 UNKNOWN — CVE-1999-0121: Buffer overflow in dtaction command gives root access.
- CVE-1999-0122 UNKNOWN — CVE-1999-0122: Buffer overflow in AIX lchangelv gives root access.
- CVE-1999-0123 UNKNOWN — CVE-1999-0123: Race condition in Linux mailx command allows local users to read user files.
- CVE-1999-0124 UNKNOWN — CVE-1999-0124: Vulnerabilities in UMN gopher and gopher+ versions 1.12 and 2.0x allow an intruder to read any files that can be accesse
- CVE-1999-0125 UNKNOWN — CVE-1999-0125: Buffer overflow in SGI IRIX mailx program.
- CVE-1999-0128 UNKNOWN — CVE-1999-0128: Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
- CVE-1999-0126 UNKNOWN — CVE-1999-0126: SGI IRIX buffer overflow in xterm and Xaw allows root access.
- CVE-1999-0129 UNKNOWN — CVE-1999-0129: Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
- CVE-1999-0127 UNKNOWN — CVE-1999-0127: swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary fil
- CVE-1999-0130 UNKNOWN — CVE-1999-0130: Local users can start Sendmail in daemon mode and gain root privileges.
- CVE-1999-0132 UNKNOWN — CVE-1999-0132: Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
- CVE-1999-0131 UNKNOWN — CVE-1999-0131: Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users
- CVE-1999-0134 UNKNOWN — CVE-1999-0134: vold in Solaris 2.x allows local users to gain root access.
- CVE-1999-0133 UNKNOWN — CVE-1999-0133: fm_fls license server for Adobe Framemaker allows local users to overwrite arbitrary files and gain root access.
- CVE-1999-0136 UNKNOWN — CVE-1999-0136: Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access.
- CVE-1999-0138 UNKNOWN — CVE-1999-0138: The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing ro
- CVE-1999-0135 UNKNOWN — CVE-1999-0135: admintool in Solaris allows a local user to write to arbitrary files and gain root access.
- CVE-1999-0139 UNKNOWN — CVE-1999-0139: Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access.
- CVE-1999-0137 UNKNOWN — CVE-1999-0137: The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
- CVE-1999-0140 UNKNOWN — CVE-1999-0140: Denial of service in RAS/PPTP on NT systems.
- CVE-1999-0142 UNKNOWN — CVE-1999-0142: The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet
- CVE-1999-0143 UNKNOWN — CVE-1999-0143: Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.
- CVE-1999-0141 UNKNOWN — CVE-1999-0141: Java Bytecode Verifier allows malicious applets to execute arbitrary commands as the user of the applet.
- CVE-1999-0144 UNKNOWN — CVE-1999-0144: Denial of service in Qmail by specifying a large number of recipients with the RCPT command.
- CVE-1999-0145 UNKNOWN — CVE-1999-0145: Sendmail WIZ command enabled, allowing root access.
- CVE-1999-0146 UNKNOWN — CVE-1999-0146: The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded
- CVE-1999-0147 UNKNOWN — CVE-1999-0147: The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.
- CVE-1999-0148 UNKNOWN — CVE-1999-0148: The handler CGI program in IRIX allows arbitrary command execution.
- CVE-1999-0150 UNKNOWN — CVE-1999-0150: The Perl fingerd program allows arbitrary command execution from remote users.
- CVE-1999-0149 UNKNOWN — CVE-1999-0149: The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.
- CVE-1999-0151 UNKNOWN — CVE-1999-0151: The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access.
- CVE-1999-0152 UNKNOWN — CVE-1999-0152: The DG/UX finger daemon allows remote command execution through shell metacharacters.
- CVE-1999-0154 UNKNOWN — CVE-1999-0154: IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the U
- CVE-1999-0153 UNKNOWN — CVE-1999-0153: Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
- CVE-1999-0156 UNKNOWN — CVE-1999-0156: wu-ftpd FTP daemon allows any user and password combination.
- CVE-1999-0155 UNKNOWN — CVE-1999-0155: The ghostscript command with the -dSAFER option allows remote attackers to execute commands.
- CVE-1999-0157 UNKNOWN — CVE-1999-0157: Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service.
- CVE-1999-0158 UNKNOWN — CVE-1999-0158: Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve a
- CVE-1999-0159 UNKNOWN — CVE-1999-0159: Attackers can crash a Cisco IOS router or device, provided they can get to an interactive prompt (such as a login). Thi
- CVE-1999-0160 UNKNOWN — CVE-1999-0160: Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connect
- CVE-1999-0161 UNKNOWN — CVE-1999-0161: In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
- CVE-1999-0162 UNKNOWN — CVE-1999-0162: The "established" keyword in some Cisco IOS software allowed an attacker to bypass filtering.
- CVE-1999-0163 UNKNOWN — CVE-1999-0163: In older versions of Sendmail, an attacker could use a pipe character to execute root commands.
- CVE-1999-0164 UNKNOWN — CVE-1999-0164: A race condition in the Solaris ps command allows an attacker to overwrite critical files.
- CVE-1999-0165 UNKNOWN — CVE-1999-0165: NFS cache poisoning.
- CVE-1999-0166 UNKNOWN — CVE-1999-0166: NFS allows users to use a "cd .." command to access other directories besides the exported file system.
- CVE-1999-0167 UNKNOWN — CVE-1999-0167: In SunOS, NFS file handles could be guessed, giving unauthorized access to the exported file system.
- CVE-1999-0168 UNKNOWN — CVE-1999-0168: The portmapper may act as a proxy and redirect service requests from an attacker, making the request appear to come from
- CVE-1999-0169 UNKNOWN — CVE-1999-0169: NFS allows attackers to read and write any file on the system by specifying a false UID.
- CVE-1999-0170 UNKNOWN — CVE-1999-0170: Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.
- CVE-1999-0171 UNKNOWN — CVE-1999-0171: Denial of service in syslog by sending it a large number of superfluous messages.
- CVE-1999-0173 UNKNOWN — CVE-1999-0173: FormMail CGI program can be used by web servers other than the host server that the program resides on.
- CVE-1999-0172 UNKNOWN — CVE-1999-0172: FormMail CGI program allows remote execution of commands.
- CVE-1999-0174 UNKNOWN — CVE-1999-0174: The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0175 UNKNOWN — CVE-1999-0175: The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is intern
- CVE-1999-0176 UNKNOWN — CVE-1999-0176: The Webgais program allows a remote user to execute arbitrary commands.
- CVE-1999-0177 UNKNOWN — CVE-1999-0177: The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
- CVE-1999-0179 UNKNOWN — CVE-1999-0179: Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
- CVE-1999-0178 UNKNOWN — CVE-1999-0178: Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to
- CVE-1999-0180 UNKNOWN — CVE-1999-0180: in.rshd allows users to login with a NULL username and execute commands.
- CVE-1999-0181 UNKNOWN — CVE-1999-0181: The wall daemon can be used for denial of service, social engineering attacks, or to execute remote commands.
- CVE-1999-0183 UNKNOWN — CVE-1999-0183: Linux implementations of TFTP would allow access to files outside the restricted directory.
- CVE-1999-0182 UNKNOWN — CVE-1999-0182: Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.
- CVE-1999-0184 UNKNOWN — CVE-1999-0184: When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious mod
- CVE-1999-0186 UNKNOWN — CVE-1999-0186: In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands a
- CVE-1999-0185 UNKNOWN — CVE-1999-0185: In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trust
- CVE-1999-0187 UNKNOWN — CVE-1999-0187: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0022. Reason: This candidate is a duplicate of
- CVE-1999-0188 UNKNOWN — CVE-1999-0188: The passwd command in Solaris can be subjected to a denial of service.
- CVE-1999-0189 UNKNOWN — CVE-1999-0189: Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111.
- CVE-1999-0190 UNKNOWN — CVE-1999-0190: Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.
- CVE-1999-0191 UNKNOWN — CVE-1999-0191: IIS newdsn.exe CGI script allows remote users to overwrite files.
- CVE-1999-0192 UNKNOWN — CVE-1999-0192: Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environment
- CVE-1999-0193 UNKNOWN — CVE-1999-0193: Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.
- CVE-1999-0194 UNKNOWN — CVE-1999-0194: Denial of service in in.comsat allows attackers to generate messages.
- CVE-1999-0195 UNKNOWN — CVE-1999-0195: Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using
- CVE-1999-0196 UNKNOWN — CVE-1999-0196: websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver pa
- CVE-1999-0198 UNKNOWN — CVE-1999-0198: finger .@host on some systems may print information on some user accounts.
- CVE-1999-0200 UNKNOWN — CVE-1999-0200: Windows NT FTP server (WFTP) with the guest account enabled without a password allows an attacker to log into the FTP se
- CVE-1999-0197 UNKNOWN — CVE-1999-0197: finger 0@host on some systems may print information on some user accounts.
- CVE-1999-0201 UNKNOWN — CVE-1999-0201: A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.
- CVE-1999-0203 UNKNOWN — CVE-1999-0203: In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "r
- CVE-1999-0202 UNKNOWN — CVE-1999-0202: The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.
- CVE-1999-0204 UNKNOWN — CVE-1999-0204: Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.
- CVE-1999-0205 UNKNOWN — CVE-1999-0205: Denial of service in Sendmail 8.6.11 and 8.6.12.
- CVE-1999-0206 UNKNOWN — CVE-1999-0206: MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root access.
- CVE-1999-0207 UNKNOWN — CVE-1999-0207: Remote attacker can execute commands through Majordomo using the Reply-To field and a "lists" command.
- CVE-1999-0208 UNKNOWN — CVE-1999-0208: rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.
- CVE-1999-0209 UNKNOWN — CVE-1999-0209: The SunView (SunTools) selection_svc facility allows remote users to read files.
- CVE-1999-0210 UNKNOWN — CVE-1999-0210: Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.
- CVE-1999-0211 UNKNOWN — CVE-1999-0211: Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone.
- CVE-1999-0212 UNKNOWN — CVE-1999-0212: Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server.
- CVE-1999-0213 UNKNOWN — CVE-1999-0213: libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.
- CVE-1999-0214 UNKNOWN — CVE-1999-0214: Denial of service by sending forged ICMP unreachable packets.
- CVE-1999-0215 UNKNOWN — CVE-1999-0215: Routed allows attackers to append data to files.
- CVE-1999-0216 UNKNOWN — CVE-1999-0216: Denial of service of inetd on Linux through SYN and RST packets.
- CVE-1999-0217 UNKNOWN — CVE-1999-0217: Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.
- CVE-1999-0219 UNKNOWN — CVE-1999-0219: Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1)
- CVE-1999-0218 UNKNOWN — CVE-1999-0218: Livingston portmaster machines could be rebooted via a series of commands.
- CVE-1999-0220 UNKNOWN — CVE-1999-0220: Attackers can do a denial of service of IRC by crashing the server.
- CVE-1999-0221 UNKNOWN — CVE-1999-0221: Denial of service of Ascend routers through port 150 (remote administration).
- CVE-1999-0222 UNKNOWN — CVE-1999-0222: Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL.
- CVE-1999-0223 UNKNOWN — CVE-1999-0223: Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry.
- CVE-1999-0224 UNKNOWN — CVE-1999-0224: Denial of service in Windows NT messenger service through a long username.
- CVE-1999-0225 UNKNOWN — CVE-1999-0225: Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed SMB logon request in which the actua
- CVE-1999-0226 UNKNOWN — CVE-1999-0226: Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.
- CVE-1999-0227 UNKNOWN — CVE-1999-0227: Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.
- CVE-1999-0229 UNKNOWN — CVE-1999-0229: Denial of service in Windows NT IIS server using ..\..
- CVE-1999-0230 UNKNOWN — CVE-1999-0230: Buffer overflow in Cisco 7xx routers through the telnet service.
- CVE-1999-0228 UNKNOWN — CVE-1999-0228: Denial of service in RPCSS.EXE program (RPC Locator) in Windows NT.
- CVE-1999-0231 UNKNOWN — CVE-1999-0231: Buffer overflow in IP-Switch IMail and Seattle Labs Slmail 2.6 packages using a long VRFY command, causing a denial of s
- CVE-1999-0232 UNKNOWN — CVE-1999-0232: Buffer overflow in NCSA WebServer (version 1.5c) gives remote access.
- CVE-1999-0233 UNKNOWN — CVE-1999-0233: IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.
- CVE-1999-0234 UNKNOWN — CVE-1999-0234: Bash treats any character with a value of 255 as a command separator.
- CVE-1999-0236 UNKNOWN — CVE-1999-0236: ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
- CVE-1999-0235 UNKNOWN — CVE-1999-0235: Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote access.
- CVE-1999-0237 UNKNOWN — CVE-1999-0237: Remote execution of arbitrary commands through Guestbook CGI program.
- CVE-1999-0238 UNKNOWN — CVE-1999-0238: php.cgi allows attackers to read any file on the system.
- CVE-1999-0239 UNKNOWN — CVE-1999-0239: Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
- CVE-1999-0240 UNKNOWN — CVE-1999-0240: Some filters or firewalls allow fragmented SYN packets with IP reserved bits in violation of their implemented policy.
- CVE-1999-0241 UNKNOWN — CVE-1999-0241: Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm.
- CVE-1999-0242 UNKNOWN — CVE-1999-0242: Remote attackers can access mail files via POP3 in some Linux systems that are using shadow passwords.
- CVE-1999-0243 UNKNOWN — CVE-1999-0243: Linux cfingerd could be exploited to gain root access.
- CVE-1999-0244 UNKNOWN — CVE-1999-0244: Livingston RADIUS code has a buffer overflow which can allow remote execution of commands as root.
- CVE-1999-0246 UNKNOWN — CVE-1999-0246: HP Remote Watch allows a remote user to gain root access.
- CVE-1999-0245 UNKNOWN — CVE-1999-0245: Some configurations of NIS+ in Linux allowed attackers to log in as the user "+".
- CVE-1999-0247 UNKNOWN — CVE-1999-0247: Buffer overflow in nnrpd program in INN up to version 1.6 allows remote users to execute arbitrary commands.
- CVE-1999-0248 UNKNOWN — CVE-1999-0248: A race condition in the authentication agent mechanism of sshd 1.2.17 allows an attacker to steal another user's credent
- CVE-1999-0249 UNKNOWN — CVE-1999-0249: Windows NT RSHSVC program allows remote users to execute arbitrary commands.
- CVE-1999-0250 UNKNOWN — CVE-1999-0250: Denial of service in Qmail through long SMTP commands.
- CVE-1999-0251 UNKNOWN — CVE-1999-0251: Denial of service in talk program allows remote attackers to disrupt a user's display.
- CVE-1999-0252 UNKNOWN — CVE-1999-0252: Buffer overflow in listserv allows arbitrary command execution.
- CVE-1999-0253 UNKNOWN — CVE-1999-0253: IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e in
- CVE-1999-0254 UNKNOWN — CVE-1999-0254: A hidden SNMP community string in HP OpenView allows remote attackers to modify MIB tables and obtain sensitive informat
- CVE-1999-0255 UNKNOWN — CVE-1999-0255: Buffer overflow in ircd allows arbitrary command execution.
- CVE-1999-0256 UNKNOWN — CVE-1999-0256: Buffer overflow in War FTP allows remote execution of commands.
- CVE-1999-0257 UNKNOWN — CVE-1999-0257: Nestea variation of teardrop IP fragmentation denial of service.
- CVE-1999-0258 UNKNOWN — CVE-1999-0258: Bonk variation of teardrop IP fragmentation denial of service.
- CVE-1999-0260 UNKNOWN — CVE-1999-0260: The jj CGI program allows command execution via shell metacharacters.
- CVE-1999-0259 UNKNOWN — CVE-1999-0259: cfingerd lists all users on a system via search.**@target.
- CVE-1999-0261 UNKNOWN — CVE-1999-0261: Netmanager Chameleon SMTPd has several buffer overflows that cause a crash.
- CVE-1999-0262 UNKNOWN — CVE-1999-0262: Hylafax faxsurvey CGI script on Linux allows remote attackers to execute arbitrary commands via shell metacharacters in
- CVE-1999-0264 UNKNOWN — CVE-1999-0264: htmlscript CGI program allows remote read access to files.
- CVE-1999-0265 UNKNOWN — CVE-1999-0265: ICMP redirect messages may crash or lock up a host.
- CVE-1999-0263 UNKNOWN — CVE-1999-0263: Solaris SUNWadmap can be exploited to obtain root access.
- CVE-1999-0266 UNKNOWN — CVE-1999-0266: The info2www CGI script allows remote file access or remote command execution.
- CVE-1999-0267 UNKNOWN — CVE-1999-0267: Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution.
- CVE-1999-0268 UNKNOWN — CVE-1999-0268: MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.
- CVE-1999-0269 UNKNOWN — CVE-1999-0269: Netscape Enterprise servers may list files through the PageServices query.
- CVE-1999-0270 UNKNOWN — CVE-1999-0270: Directory traversal vulnerability in pfdispaly.cgi program (sometimes referred to as "pfdisplay") for SGI's Performer AP
- CVE-1999-0271 UNKNOWN — CVE-1999-0271: Progressive Networks Real Video server (pnserver) can be crashed remotely.
- CVE-1999-0272 UNKNOWN — CVE-1999-0272: Denial of service in Slmail v2.5 through the POP3 port.
- CVE-1999-0273 UNKNOWN — CVE-1999-0273: Denial of service through Solaris 2.5.1 telnet by sending ^D characters.
- CVE-1999-0274 UNKNOWN — CVE-1999-0274: Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't ma
- CVE-1999-0275 UNKNOWN — CVE-1999-0275: Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.
- CVE-1999-0276 UNKNOWN — CVE-1999-0276: mSQL v2.0.1 and below allows remote execution through a buffer overflow.
- CVE-1999-0277 UNKNOWN — CVE-1999-0277: The WorkMan program can be used to overwrite any file to get root access.
- CVE-1999-0278 UNKNOWN — CVE-1999-0278: In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL.
- CVE-1999-0279 UNKNOWN — CVE-1999-0279: Excite for Web Servers (EWS) allows remote command execution via shell metacharacters.
- CVE-1999-0280 UNKNOWN — CVE-1999-0280: Remote command execution in Microsoft Internet Explorer using .lnk and .url files.
- CVE-1999-0281 UNKNOWN — CVE-1999-0281: Denial of service in IIS using long URLs.
- CVE-1999-0282 UNKNOWN — CVE-1999-0282: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1584, CVE-1999-1586. Reason: This candidate co
- CVE-1999-0284 UNKNOWN — CVE-1999-0284: Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HEL
- CVE-1999-0286 UNKNOWN — CVE-1999-0286: In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages.
- CVE-1999-0283 UNKNOWN — CVE-1999-0283: The Java Web Server would allow remote users to obtain the source code for CGI programs.
- CVE-1999-0285 UNKNOWN — CVE-1999-0285: Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection.
- CVE-1999-0287 UNKNOWN — CVE-1999-0287: Vulnerability in the Wguest CGI program.
- CVE-1999-0289 UNKNOWN — CVE-1999-0289: The Apache web server for Win32 may provide access to restricted files when a . (dot) is appended to a requested URL.
- CVE-1999-0288 UNKNOWN — CVE-1999-0288: The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process ter
- CVE-1999-0290 UNKNOWN — CVE-1999-0290: The WinGate telnet proxy allows remote attackers to cause a denial of service via a large number of connections to local
- CVE-1999-0291 UNKNOWN — CVE-1999-0291: The WinGate proxy is installed without a password, which allows remote attackers to redirect connections without authent
- CVE-1999-0292 UNKNOWN — CVE-1999-0292: Denial of service through Winpopup using large user names.
- CVE-1999-0293 UNKNOWN — CVE-1999-0293: AAA authentication on Cisco systems allows attackers to execute commands without authorization.
- CVE-1999-0295 UNKNOWN — CVE-1999-0295: Solaris sysdef command allows local users to read kernel memory, potentially leading to root privileges.
- CVE-1999-0296 UNKNOWN — CVE-1999-0296: Solaris volrmmount program allows attackers to read any file.
- CVE-1999-0294 UNKNOWN — CVE-1999-0294: All records in a WINS database can be deleted through SNMP for a denial of service.
- CVE-1999-0297 UNKNOWN — CVE-1999-0297: Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmenta
- CVE-1999-0299 UNKNOWN — CVE-1999-0299: Buffer overflow in FreeBSD lpd through long DNS hostnames.
- CVE-1999-0298 UNKNOWN — CVE-1999-0298: ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to over
- CVE-1999-0300 UNKNOWN — CVE-1999-0300: nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers.
- CVE-1999-0301 UNKNOWN — CVE-1999-0301: Buffer overflow in SunOS/Solaris ps command.
- CVE-1999-0304 UNKNOWN — CVE-1999-0304: mmap function in BSD allows local attackers in the kmem group to modify memory through devices.
- CVE-1999-0303 UNKNOWN — CVE-1999-0303: Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.
- CVE-1999-0305 UNKNOWN — CVE-1999-0305: The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2
- CVE-1999-0306 UNKNOWN — CVE-1999-0306: buffer overflow in HP xlock program.
- CVE-1999-0302 UNKNOWN — CVE-1999-0302: SunOS/Solaris FTP clients can be forced to execute arbitrary commands from a malicious FTP server.
- CVE-1999-0308 UNKNOWN — CVE-1999-0308: HP-UX gwind program allows users to modify arbitrary files.
- CVE-1999-0309 UNKNOWN — CVE-1999-0309: HP-UX vgdisplay program gives root access to local users.
- CVE-1999-0310 UNKNOWN — CVE-1999-0310: SSH 1.2.25 on HP-UX allows access to new user accounts.
- CVE-1999-0311 UNKNOWN — CVE-1999-0311: fpkg2swpk in HP-UX allows local users to gain root access.
- CVE-1999-0312 UNKNOWN — CVE-1999-0312: HP ypbind allows attackers with root privileges to modify NIS data.
- CVE-1999-0313 UNKNOWN — CVE-1999-0313: disk_bandwidth on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
- CVE-1999-0314 UNKNOWN — CVE-1999-0314: ioconfig on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
- CVE-1999-0315 UNKNOWN — CVE-1999-0315: Buffer overflow in Solaris fdformat command gives root access to local users.
- CVE-1999-0316 UNKNOWN — CVE-1999-0316: Buffer overflow in Linux splitvt command gives root access to local users.
- CVE-1999-0317 UNKNOWN — CVE-1999-0317: Buffer overflow in Linux su command gives root access to local users.
- CVE-1999-0318 UNKNOWN — CVE-1999-0318: Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
- CVE-1999-0319 UNKNOWN — CVE-1999-0319: Buffer overflow in xmcd 2.1 allows local users to gain access through a user resource setting.
- CVE-1999-0320 UNKNOWN — CVE-1999-0320: SunOS rpc.cmsd allows attackers to obtain root access by overwriting arbitrary files.
- CVE-1999-0321 UNKNOWN — CVE-1999-0321: Buffer overflow in Solaris kcms_configure command allows local users to gain root access.
- CVE-1999-0322 UNKNOWN — CVE-1999-0322: The open() function in FreeBSD allows local attackers to write to arbitrary files.
- CVE-1999-0323 UNKNOWN — CVE-1999-0323: FreeBSD mmap function allows users to modify append-only or immutable files.
- CVE-1999-0324 UNKNOWN — CVE-1999-0324: ppl program in HP-UX allows local users to create root files through symlinks.
- CVE-1999-0326 UNKNOWN — CVE-1999-0326: Vulnerability in HP-UX mediainit program.
- CVE-1999-0328 UNKNOWN — CVE-1999-0328: SGI permissions program allows local users to gain root privileges.
- CVE-1999-0325 UNKNOWN — CVE-1999-0325: vhe_u_mnt program in HP-UX allows local users to create root files through symlinks.
- CVE-1999-0327 UNKNOWN — CVE-1999-0327: SGI syserr program allows local users to corrupt files.
- CVE-1999-0330 UNKNOWN — CVE-1999-0330: Linux bdash game has a buffer overflow that allows local users to gain root access.
- CVE-1999-0329 UNKNOWN — CVE-1999-0329: SGI mediad program allows local users to gain root access.
- CVE-1999-0331 UNKNOWN — CVE-1999-0331: Buffer overflow in Internet Explorer 4.0(1).
- CVE-1999-0332 UNKNOWN — CVE-1999-0332: Buffer overflow in NetMeeting allows denial of service and remote command execution.
- CVE-1999-0333 UNKNOWN — CVE-1999-0333: HP OpenView Omniback allows remote execution of commands as root via spoofing, and local users can gain root access via
- CVE-1999-0334 UNKNOWN — CVE-1999-0334: In Solaris 2.2 and 2.3, when fsck fails on startup, it allows a local user with physical access to obtain root access.
- CVE-1999-0335 UNKNOWN — CVE-1999-0335: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0032. Reason: This candidate is a duplicate of C
- CVE-1999-0336 UNKNOWN — CVE-1999-0336: Buffer overflow in mstm in HP-UX allows local users to gain root access.
- CVE-1999-0337 UNKNOWN — CVE-1999-0337: AIX batch queue (bsh) allows local and remote users to gain additional privileges when network printing is enabled.
- CVE-1999-0338 UNKNOWN — CVE-1999-0338: AIX Licensed Program Product performance tools allow local users to gain root access.
- CVE-1999-0339 UNKNOWN — CVE-1999-0339: Buffer overflow in the libauth library in Solaris allows local users to gain additional privileges, possibly root access
- CVE-1999-0340 UNKNOWN — CVE-1999-0340: Buffer overflow in Linux Slackware crond program allows local users to gain root access.
- CVE-1999-0341 UNKNOWN — CVE-1999-0341: Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.
- CVE-1999-0342 UNKNOWN — CVE-1999-0342: Linux PAM modules allow local users to gain root access using temporary files.
- CVE-1999-0343 UNKNOWN — CVE-1999-0343: A malicious Palace server can force a client to execute arbitrary programs.
- CVE-1999-0344 UNKNOWN — CVE-1999-0344: NT users can gain debug-level access on a system process using the Sechole exploit.
- CVE-1999-0346 UNKNOWN — CVE-1999-0346: CGI PHP mlog script allows an attacker to read any file on the target server.
- CVE-1999-0347 UNKNOWN — CVE-1999-0347: Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "abou
- CVE-1999-0348 UNKNOWN — CVE-1999-0348: IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory.
- CVE-1999-0345 UNKNOWN — CVE-1999-0345: Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
- CVE-1999-0349 UNKNOWN — CVE-1999-0349: A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in som
- CVE-1999-0350 UNKNOWN — CVE-1999-0350: Race condition in the db_loader program in ClearCase gives local users root access by setting SUID bits.
- CVE-1999-0351 UNKNOWN — CVE-1999-0351: FTP PASV "Pizza Thief" denial of service and unauthorized data access. Attackers can steal data by connecting to a port
- CVE-1999-0352 UNKNOWN — CVE-1999-0352: ControlIT 4.5 and earlier (aka Remotely Possible) has weak password encryption.
- CVE-1999-0353 UNKNOWN — CVE-1999-0353: rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory.
- CVE-1999-0354 UNKNOWN — CVE-1999-0354: Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through t
- CVE-1999-0355 UNKNOWN — CVE-1999-0355: Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service.
- CVE-1999-0358 UNKNOWN — CVE-1999-0358: Digital Unix 4.0 has a buffer overflow in the inc program of the mh package.
- CVE-1999-0356 UNKNOWN — CVE-1999-0356: ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book.
- CVE-1999-0357 UNKNOWN — CVE-1999-0357: Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets
- CVE-1999-0360 UNKNOWN — CVE-1999-0360: MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing th
- CVE-1999-0361 UNKNOWN — CVE-1999-0361: NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logg
- CVE-1999-0362 UNKNOWN — CVE-1999-0362: WS_FTP server remote denial of service through cwd command.
- CVE-1999-0363 UNKNOWN — CVE-1999-0363: SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.
- CVE-1999-0364 UNKNOWN — CVE-1999-0364: Microsoft Access 97 stores a database password as plaintext in a foreign mdb, allowing access to data.
- CVE-1999-0365 UNKNOWN — CVE-1999-0365: The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry.
- CVE-1999-0366 UNKNOWN — CVE-1999-0366: In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a pr
- CVE-1999-0369 UNKNOWN — CVE-1999-0369: The Sun sdtcm_convert calendar utility for OpenWindows has a buffer overflow which can gain root access.
- CVE-1999-0368 UNKNOWN — CVE-1999-0368: Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
- CVE-1999-0367 UNKNOWN — CVE-1999-0367: NetBSD netstat command allows local users to access kernel memory.
- CVE-1999-0370 UNKNOWN — CVE-1999-0370: In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.
- CVE-1999-0371 UNKNOWN — CVE-1999-0371: Lynx allows a local user to overwrite sensitive files through /tmp symlinks.
- CVE-1999-0372 UNKNOWN — CVE-1999-0372: The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not delet
- CVE-1999-0373 UNKNOWN — CVE-1999-0373: Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute c
- CVE-1999-0374 UNKNOWN — CVE-1999-0374: Debian GNU/Linux cfengine package is susceptible to a symlink attack.
- CVE-1999-0375 UNKNOWN — CVE-1999-0375: Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands.
- CVE-1999-0379 UNKNOWN — CVE-1999-0379: Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that a
- CVE-1999-0377 UNKNOWN — CVE-1999-0377: Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's proc
- CVE-1999-0378 UNKNOWN — CVE-1999-0378: InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands.
- CVE-1999-0376 UNKNOWN — CVE-1999-0376: Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious prog
- CVE-1999-0380 UNKNOWN — CVE-1999-0380: SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service
- CVE-1999-0381 UNKNOWN — CVE-1999-0381: super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root acce
- CVE-1999-0382 UNKNOWN — CVE-1999-0382: The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers t
- CVE-1999-0383 UNKNOWN — CVE-1999-0383: ACC Tigris allows public access without a login.
- CVE-1999-0385 UNKNOWN — CVE-1999-0385: The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of servic
- CVE-1999-0384 UNKNOWN — CVE-1999-0384: The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's c
- CVE-1999-0387 UNKNOWN — CVE-1999-0387: A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext netwo
- CVE-1999-0386 UNKNOWN — CVE-1999-0386: Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read
- CVE-1999-0389 UNKNOWN — CVE-1999-0389: Buffer overflow in the bootp server in the Debian Linux netstd package.
- CVE-1999-0388 UNKNOWN — CVE-1999-0388: DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute command
- CVE-1999-0390 UNKNOWN — CVE-1999-0390: Buffer overflow in Dosemu Slang library in Linux.
- CVE-1999-0391 UNKNOWN — CVE-1999-0391: The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to re
- CVE-1999-0392 UNKNOWN — CVE-1999-0392: Buffer overflow in Thomas Boutell's cgic library version up to 1.05.
- CVE-1999-0393 UNKNOWN — CVE-1999-0393: Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of he
- CVE-1999-0394 UNKNOWN — CVE-1999-0394: DPEC Online Courseware allows an attacker to change another user's password without knowing the original password.
- CVE-1999-0395 UNKNOWN — CVE-1999-0395: A race condition in the BackWeb Polite Agent Protocol allows an attacker to spoof a BackWeb server.
- CVE-1999-0397 UNKNOWN — CVE-1999-0397: The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext.
- CVE-1999-0396 UNKNOWN — CVE-1999-0396: A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial
- CVE-1999-0398 UNKNOWN — CVE-1999-0398: In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.
- CVE-1999-0399 UNKNOWN — CVE-1999-0399: The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attack
- CVE-1999-0400 UNKNOWN — CVE-1999-0400: Denial of service in Linux 2.2.0 running the ldd command on a core file.
- CVE-1999-0401 UNKNOWN — CVE-1999-0401: A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files.
- CVE-1999-0402 UNKNOWN — CVE-1999-0402: wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.
- CVE-1999-0403 UNKNOWN — CVE-1999-0403: A bug in Cyrix CPUs on Linux allows local users to perform a denial of service.
- CVE-1999-0404 UNKNOWN — CVE-1999-0404: Buffer overflow in the Mail-Max SMTP server for Windows systems allows remote command execution.
- CVE-1999-0405 UNKNOWN — CVE-1999-0405: A buffer overflow in lsof allows local users to obtain root privilege.
- CVE-1999-0406 UNKNOWN — CVE-1999-0406: Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege.
- CVE-1999-0407 UNKNOWN — CVE-1999-0407: By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force
- CVE-1999-0410 UNKNOWN — CVE-1999-0410: The cancel command in Solaris 2.6 (i386) has a buffer overflow that allows local users to obtain root access.
- CVE-1999-0409 UNKNOWN — CVE-1999-0409: Buffer overflow in gnuplot in Linux version 3.5 allows local users to obtain root access.
- CVE-1999-0408 UNKNOWN — CVE-1999-0408: Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and th
- CVE-1999-0411 UNKNOWN — CVE-1999-0411: Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs,
- CVE-1999-0412 UNKNOWN — CVE-1999-0412: In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading a
- CVE-1999-0413 UNKNOWN — CVE-1999-0413: A buffer overflow in the SGI X server allows local users to gain root access through the X server font path.
- CVE-1999-0414 UNKNOWN — CVE-1999-0414: In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer befor
- CVE-1999-0415 UNKNOWN — CVE-1999-0415: The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to chan
- CVE-1999-0416 UNKNOWN — CVE-1999-0416: Vulnerability in Cisco 7xx series routers allows a remote attacker to cause a system reload via a TCP connection to the
- CVE-1999-0417 UNKNOWN — CVE-1999-0417: 64 bit Solaris 7 procfs allows local users to perform a denial of service.
- CVE-1999-0419 UNKNOWN — CVE-1999-0419: When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and rep
- CVE-1999-0420 UNKNOWN — CVE-1999-0420: umapfs allows local users to gain root privileges by changing their uid through a malicious mount_umap program.
- CVE-1999-0418 UNKNOWN — CVE-1999-0418: Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many "RCPT TO" comma
- CVE-1999-0421 UNKNOWN — CVE-1999-0421: During a reboot after an installation of Linux Slackware 3.6, a remote attacker can obtain root access by logging in to
- CVE-1999-0422 UNKNOWN — CVE-1999-0422: In some cases, NetBSD 1.3.3 mount allows local users to execute programs in some file systems that have the "noexec" fla
- CVE-1999-0424 UNKNOWN — CVE-1999-0424: talkback in Netscape 4.5 allows a local user to overwrite arbitrary files of another user whose Netscape crashes.
- CVE-1999-0425 UNKNOWN — CVE-1999-0425: talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes.
- CVE-1999-0423 UNKNOWN — CVE-1999-0423: Vulnerability in hpterm on HP-UX 10.20 allows local users to gain additional privileges.
- CVE-1999-0426 UNKNOWN — CVE-1999-0426: The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
- CVE-1999-0427 UNKNOWN — CVE-1999-0427: Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.
- CVE-1999-0428 UNKNOWN — CVE-1999-0428: OpenSSL and SSLeay allow remote attackers to reuse SSL sessions and bypass access controls.
- CVE-1999-0429 UNKNOWN — CVE-1999-0429: The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set th
- CVE-1999-0430 UNKNOWN — CVE-1999-0430: Cisco Catalyst LAN switches running Catalyst 5000 supervisor software allows remote attackers to perform a denial of ser
- CVE-1999-0431 UNKNOWN — CVE-1999-0431: Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.
- CVE-1999-0432 UNKNOWN — CVE-1999-0432: ftp on HP-UX 11.00 allows local users to gain privileges.
- CVE-1999-0433 UNKNOWN — CVE-1999-0433: XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories
- CVE-1999-0435 UNKNOWN — CVE-1999-0435: MC/ServiceGuard and MC/LockManager in HP-UX allows local users to gain privileges through SAM.
- CVE-1999-0434 UNKNOWN — CVE-1999-0434: XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, p
- CVE-1999-0436 UNKNOWN — CVE-1999-0436: Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges.
- CVE-1999-0438 UNKNOWN — CVE-1999-0438: Remote attackers can perform a denial of service in WebRamp systems by sending a malicious UDP packet to port 5353, chan
- CVE-1999-0437 UNKNOWN — CVE-1999-0437: Remote attackers can perform a denial of service in WebRamp systems by sending a malicious string to the HTTP port.
- CVE-1999-0439 UNKNOWN — CVE-1999-0439: Buffer overflow in procmail before version 3.12 allows remote or local attackers to execute commands via expansions in t
- CVE-1999-0440 UNKNOWN — CVE-1999-0440: The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages.
- CVE-1999-0441 UNKNOWN — CVE-1999-0441: Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector S
- CVE-1999-0442 UNKNOWN — CVE-1999-0442: Solaris ff.core allows local users to modify files.
- CVE-1999-0443 UNKNOWN — CVE-1999-0443: Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password.
- CVE-1999-0445 UNKNOWN — CVE-1999-0445: In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filt
- CVE-1999-0444 UNKNOWN — CVE-1999-0444: Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box
- CVE-1999-0446 UNKNOWN — CVE-1999-0446: Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link wi
- CVE-1999-0448 UNKNOWN — CVE-1999-0448: IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL
- CVE-1999-0447 UNKNOWN — CVE-1999-0447: Local users can gain privileges using the debug utility in the MPE/iX operating system.
- CVE-1999-0449 UNKNOWN — CVE-1999-0449: The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct reque
- CVE-1999-0450 UNKNOWN — CVE-1999-0450: In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl
- CVE-1999-0451 UNKNOWN — CVE-1999-0451: Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.
- CVE-1999-0452 UNKNOWN — CVE-1999-0452: A service or application has a backdoor password that was placed there by the developer.
- CVE-1999-0453 UNKNOWN — CVE-1999-0453: An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol
- CVE-1999-0454 UNKNOWN — CVE-1999-0454: A remote attacker can sometimes identify the operating system of a host based on how it reacts to some IP or ICMP packet
- CVE-1999-0455 UNKNOWN — CVE-1999-0455: The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server
- CVE-1999-0458 UNKNOWN — CVE-1999-0458: L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
- CVE-1999-0457 UNKNOWN — CVE-1999-0457: Linux ftpwatch program allows local users to gain root privileges.
- CVE-1999-0459 UNKNOWN — CVE-1999-0459: Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot.
- CVE-1999-0460 UNKNOWN — CVE-1999-0460: Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.
- CVE-1999-0461 UNKNOWN — CVE-1999-0461: Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entr
- CVE-1999-0462 UNKNOWN — CVE-1999-0462: suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access
- CVE-1999-0463 UNKNOWN — CVE-1999-0463: Remote attackers can perform a denial of service using IRIX fcagent.
- CVE-1999-0464 UNKNOWN — CVE-1999-0464: Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames.
- CVE-1999-0465 UNKNOWN — CVE-1999-0465: Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter.
- CVE-1999-0466 UNKNOWN — CVE-1999-0466: The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and earlier allows a local user to read or write arbitrary files
- CVE-1999-0467 UNKNOWN — CVE-1999-0467: The Webcom CGI Guestbook programs wguest.exe and rguest.exe allow a remote attacker to read arbitrary files using the "t
- CVE-1999-0469 UNKNOWN — CVE-1999-0469: Internet Explorer 5.0 allows window spoofing, allowing a remote attacker to spoof a legitimate web site and capture info
- CVE-1999-0468 UNKNOWN — CVE-1999-0468: Internet Explorer 5.0 allows a remote server to read arbitrary files on the client's file system using the Microsoft Scr
- CVE-1999-0470 UNKNOWN — CVE-1999-0470: A weak encryption algorithm is used for passwords in Novell Remote.NLM, allowing them to be easily decrypted.
- CVE-1999-0471 UNKNOWN — CVE-1999-0471: The remote proxy server in Winroute allows a remote attacker to reconfigure the proxy without authentication through the
- CVE-1999-0472 UNKNOWN — CVE-1999-0472: The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tri
- CVE-1999-0473 UNKNOWN — CVE-1999-0473: The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the p
- CVE-1999-0474 UNKNOWN — CVE-1999-0474: The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.
- CVE-1999-0476 UNKNOWN — CVE-1999-0476: A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local use
- CVE-1999-0475 UNKNOWN — CVE-1999-0475: A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the
- CVE-1999-0477 UNKNOWN — CVE-1999-0477: The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via
- CVE-1999-0479 UNKNOWN — CVE-1999-0479: Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.
- CVE-1999-0478 UNKNOWN — CVE-1999-0478: Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
- CVE-1999-0480 UNKNOWN — CVE-1999-0480: Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack.
- CVE-1999-0481 UNKNOWN — CVE-1999-0481: Denial of service in "poll" in OpenBSD.
- CVE-1999-0482 UNKNOWN — CVE-1999-0482: OpenBSD kernel crash through TSS handling, as caused by the crashme program.
- CVE-1999-0483 UNKNOWN — CVE-1999-0483: OpenBSD crash using nlink value in FFS and EXT2FS filesystems.
- CVE-1999-0484 UNKNOWN — CVE-1999-0484: Buffer overflow in OpenBSD ping.
- CVE-1999-0486 UNKNOWN — CVE-1999-0486: Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, p
- CVE-1999-0485 UNKNOWN — CVE-1999-0485: Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.
- CVE-1999-0487 UNKNOWN — CVE-1999-0487: The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files.
- CVE-1999-0488 UNKNOWN — CVE-1999-0488: Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using
- CVE-1999-0489 UNKNOWN — CVE-1999-0489: MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control
- CVE-1999-0490 UNKNOWN — CVE-1999-0490: MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG
- CVE-1999-0491 UNKNOWN — CVE-1999-0491: The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name
- CVE-1999-0492 UNKNOWN — CVE-1999-0492: The ffingerd 1.19 allows remote attackers to identify users on the target system based on its responses.
- CVE-1999-0493 UNKNOWN — CVE-1999-0493: rpc.statd allows remote attackers to forward RPC calls to the local operating system via the SM_MON and SM_NOTIFY comman
- CVE-1999-0494 UNKNOWN — CVE-1999-0494: Denial of service in WinGate proxy through a buffer overflow in POP3.
- CVE-1999-0496 UNKNOWN — CVE-1999-0496: A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's p
- CVE-1999-0495 UNKNOWN — CVE-1999-0495: A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares.
- CVE-1999-0498 UNKNOWN — CVE-1999-0498: TFTP is not running in a restricted directory, allowing a remote attacker to access sensitive information such as passwo
- CVE-1999-0499 UNKNOWN — CVE-1999-0499: NETBIOS share information may be published through SNMP registry keys in NT.
- CVE-1999-0497 UNKNOWN — CVE-1999-0497: Anonymous FTP is enabled.
- CVE-1999-0501 UNKNOWN — CVE-1999-0501: A Unix account has a guessable password.
- CVE-1999-0502 UNKNOWN — CVE-1999-0502: A Unix account has a default, null, blank, or missing password.
- CVE-1999-0503 UNKNOWN — CVE-1999-0503: A Windows NT local user or administrator account has a guessable password.
- CVE-1999-0504 UNKNOWN — CVE-1999-0504: A Windows NT local user or administrator account has a default, null, blank, or missing password.
- CVE-1999-0505 UNKNOWN — CVE-1999-0505: A Windows NT domain user or administrator account has a guessable password.
- CVE-1999-0506 UNKNOWN — CVE-1999-0506: A Windows NT domain user or administrator account has a default, null, blank, or missing password.
- CVE-1999-0507 UNKNOWN — CVE-1999-0507: An account on a router, firewall, or other network device has a guessable password.
- CVE-1999-0508 UNKNOWN — CVE-1999-0508: An account on a router, firewall, or other network device has a default, null, blank, or missing password.
- CVE-1999-0509 UNKNOWN — CVE-1999-0509: Perl, sh, csh, or other shell interpreters are installed in the cgi-bin directory on a WWW site, which allows remote att
- CVE-1999-0510 UNKNOWN — CVE-1999-0510: A router or firewall allows source routed packets from arbitrary hosts.
- CVE-1999-0511 UNKNOWN — CVE-1999-0511: IP forwarding is enabled on a machine which is not a router or firewall.
- CVE-1999-0512 UNKNOWN — CVE-1999-0512: A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.
- CVE-1999-0513 UNKNOWN — CVE-1999-0513: ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
- CVE-1999-0514 UNKNOWN — CVE-1999-0514: UDP messages to broadcast addresses are allowed, allowing for a Fraggle attack that can cause a denial of service by flo
- CVE-1999-0515 UNKNOWN — CVE-1999-0515: An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv.
- CVE-1999-0516 UNKNOWN — CVE-1999-0516: An SNMP community name is guessable.
- CVE-1999-0518 UNKNOWN — CVE-1999-0518: A NETBIOS/SMB share password is guessable.
- CVE-1999-0519 UNKNOWN — CVE-1999-0519: A NETBIOS/SMB share password is the default, null, or missing.
- CVE-1999-0517 UNKNOWN — CVE-1999-0517: An SNMP community name is the default (e.g. public), null, or missing.
- CVE-1999-0520 UNKNOWN — CVE-1999-0520: A system-critical NETBIOS/SMB share has inappropriate access control.
- CVE-1999-0521 UNKNOWN — CVE-1999-0521: An NIS domain name is easily guessable.
- CVE-1999-0522 UNKNOWN — CVE-1999-0522: The permissions for a system-critical NIS+ table (e.g. passwd) are inappropriate.
- CVE-1999-0523 UNKNOWN — CVE-1999-0523: ICMP echo (ping) is allowed from arbitrary hosts.
- CVE-1999-0524 UNKNOWN — CVE-1999-0524: ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.
- CVE-1999-0526 UNKNOWN — CVE-1999-0526: An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
- CVE-1999-0527 UNKNOWN — CVE-1999-0527: The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory
- CVE-1999-0525 UNKNOWN — CVE-1999-0525: IP traceroute is allowed from arbitrary hosts.
- CVE-1999-0528 UNKNOWN — CVE-1999-0528: A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in
- CVE-1999-0530 UNKNOWN — CVE-1999-0530: A system is operating in "promiscuous" mode which allows it to perform packet sniffing.
- CVE-1999-0529 UNKNOWN — CVE-1999-0529: A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x
- CVE-1999-0531 UNKNOWN — CVE-1999-0531: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0532 UNKNOWN — CVE-1999-0532: A DNS server allows zone transfers.
- CVE-1999-0533 UNKNOWN — CVE-1999-0533: A DNS server allows inverse queries.
- CVE-1999-0534 UNKNOWN — CVE-1999-0534: A Windows NT user has inappropriate rights or privileges, e.g. Act as System, Add Workstation, Backup, Change System Tim
- CVE-1999-0535 UNKNOWN — CVE-1999-0535: A Windows NT account policy for passwords has inappropriate, security-critical settings, e.g. for password length, passw
- CVE-1999-0539 UNKNOWN — CVE-1999-0539: A trust relationship exists between two Unix hosts.
- CVE-1999-0537 UNKNOWN — CVE-1999-0537: A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such
- CVE-1999-0541 UNKNOWN — CVE-1999-0541: A password for accessing a WWW URL is guessable.
- CVE-1999-0547 UNKNOWN — CVE-1999-0547: An SSH server allows authentication through the .rhosts file.
- CVE-1999-0546 UNKNOWN — CVE-1999-0546: The Windows NT guest account is enabled.
- CVE-1999-0548 UNKNOWN — CVE-1999-0548: A superfluous NFS server is running, but it is not importing or exporting any file systems.
- CVE-1999-0549 UNKNOWN — CVE-1999-0549: Windows NT automatically logs in an administrator upon rebooting.
- CVE-1999-0550 UNKNOWN — CVE-1999-0550: A router's routing tables can be obtained from arbitrary hosts.
- CVE-1999-0551 UNKNOWN — CVE-1999-0551: HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests.
- CVE-1999-0555 UNKNOWN — CVE-1999-0555: A Unix account with a name other than "root" has UID 0, i.e. root privileges.
- CVE-1999-0559 UNKNOWN — CVE-1999-0559: A system-critical Unix file or directory has inappropriate permissions.
- CVE-1999-0554 UNKNOWN — CVE-1999-0554: NFS exports system-critical data to the world, e.g. / or a password file.
- CVE-1999-0556 UNKNOWN — CVE-1999-0556: Two or more Unix accounts have the same UID.
- CVE-1999-0560 UNKNOWN — CVE-1999-0560: A system-critical Windows NT file or directory has inappropriate permissions.
- CVE-1999-0561 UNKNOWN — CVE-1999-0561: IIS has the #exec function enabled for Server Side Include (SSI) files.
- CVE-1999-0562 UNKNOWN — CVE-1999-0562: The registry in Windows NT can be accessed remotely by users who are not administrators.
- CVE-1999-0564 UNKNOWN — CVE-1999-0564: An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to beco
- CVE-1999-0565 UNKNOWN — CVE-1999-0565: A Sendmail alias allows input to be piped to a program.
- CVE-1999-0566 UNKNOWN — CVE-1999-0566: An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding
- CVE-1999-0568 UNKNOWN — CVE-1999-0568: rpc.admind in Solaris is not running in a secure mode.
- CVE-1999-0569 UNKNOWN — CVE-1999-0569: A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not cont
- CVE-1999-0571 UNKNOWN — CVE-1999-0571: A router's configuration service or management interface (such as a web server or telnet) is configured to allow connect
- CVE-1999-0572 UNKNOWN — CVE-1999-0572: .reg files are associated with the Windows NT registry editor (regedit), making the registry susceptible to Trojan Horse
- CVE-1999-0575 UNKNOWN — CVE-1999-0575: A Windows NT system's user audit policy does not log an event success or failure, e.g. for Logon and Logoff, File and Ob
- CVE-1999-0570 UNKNOWN — CVE-1999-0570: Windows NT is not using a password filter utility, e.g. PASSFILT.DLL.
- CVE-1999-0576 UNKNOWN — CVE-1999-0576: A Windows NT system's file audit policy does not log an event success or failure for security-critical files or director
- CVE-1999-0577 UNKNOWN — CVE-1999-0577: A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories.
- CVE-1999-0578 UNKNOWN — CVE-1999-0578: A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys
- CVE-1999-0579 UNKNOWN — CVE-1999-0579: A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys.
- CVE-1999-0580 UNKNOWN — CVE-1999-0580: The HKEY_LOCAL_MACHINE key in a Windows NT system has inappropriate, system-critical permissions.
- CVE-1999-0581 UNKNOWN — CVE-1999-0581: The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions.
- CVE-1999-0582 UNKNOWN — CVE-1999-0582: A Windows NT account policy has inappropriate, security-critical settings for lockout, e.g. lockout duration, lockout af
- CVE-1999-0583 UNKNOWN — CVE-1999-0583: There is a one-way or two-way trust relationship between Windows NT domains.
- CVE-1999-0584 UNKNOWN — CVE-1999-0584: A Windows NT file system is not NTFS.
- CVE-1999-0586 UNKNOWN — CVE-1999-0586: A network service is running on a nonstandard port.
- CVE-1999-0587 UNKNOWN — CVE-1999-0587: A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical
- CVE-1999-0588 UNKNOWN — CVE-1999-0588: A filter in a router or firewall allows unusual fragmented packets.
- CVE-1999-0589 UNKNOWN — CVE-1999-0589: A system-critical Windows NT registry key has inappropriate permissions.
- CVE-1999-0591 UNKNOWN — CVE-1999-0591: An event log in Windows NT has inappropriate access permissions.
- CVE-1999-0593 UNKNOWN — CVE-1999-0593: The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to s
- CVE-1999-0592 UNKNOWN — CVE-1999-0592: The Logon box of a Windows NT system displays the name of the last user who logged in.
- CVE-1999-0594 UNKNOWN — CVE-1999-0594: A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.
- CVE-1999-0595 UNKNOWN — CVE-1999-0595: A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be r
- CVE-1999-0596 UNKNOWN — CVE-1999-0596: A Windows NT log file has an inappropriate maximum size or retention period.
- CVE-1999-0597 UNKNOWN — CVE-1999-0597: A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.
- CVE-1999-0598 UNKNOWN — CVE-1999-0598: A network intrusion detection system (IDS) does not properly handle packets that are sent out of order, allowing an atta
- CVE-1999-0599 UNKNOWN — CVE-1999-0599: A network intrusion detection system (IDS) does not properly handle packets with improper sequence numbers.
- CVE-1999-0600 UNKNOWN — CVE-1999-0600: A network intrusion detection system (IDS) does not verify the checksum on a packet.
- CVE-1999-0601 UNKNOWN — CVE-1999-0601: A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.
- CVE-1999-0602 UNKNOWN — CVE-1999-0602: A network intrusion detection system (IDS) does not properly reassemble fragmented packets.
- CVE-1999-0604 UNKNOWN — CVE-1999-0604: An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private informat
- CVE-1999-0603 UNKNOWN — CVE-1999-0603: In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain
- CVE-1999-0605 UNKNOWN — CVE-1999-0605: An incorrect configuration of the Order Form 1.0 shopping cart CGI program could disclose private information.
- CVE-1999-0606 UNKNOWN — CVE-1999-0606: An incorrect configuration of the EZMall 2000 shopping cart CGI program "mall2000.cgi" could disclose private informati
- CVE-1999-0607 UNKNOWN — CVE-1999-0607: quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access contr
- CVE-1999-0608 UNKNOWN — CVE-1999-0608: An incorrect configuration of the PDG Shopping Cart CGI program "shopper.cgi" could disclose private information.
- CVE-1999-0609 UNKNOWN — CVE-1999-0609: An incorrect configuration of the SoftCart CGI program "SoftCart.exe" could disclose private information.
- CVE-1999-0610 UNKNOWN — CVE-1999-0610: An incorrect configuration of the Webcart CGI program could disclose private information.
- CVE-1999-0611 UNKNOWN — CVE-1999-0611: A system-critical Windows NT registry key has an inappropriate value.
- CVE-1999-0612 UNKNOWN — CVE-1999-0612: A version of finger is running that exposes valid user information to any entity on the network.
- CVE-1999-0615 UNKNOWN — CVE-1999-0615: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0613 UNKNOWN — CVE-1999-0613: The rpc.sprayd service is running.
- CVE-1999-0614 UNKNOWN — CVE-1999-0614: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0616 UNKNOWN — CVE-1999-0616: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0617 UNKNOWN — CVE-1999-0617: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0618 UNKNOWN — CVE-1999-0618: The rexec service is running.
- CVE-1999-0619 UNKNOWN — CVE-1999-0619: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0620 UNKNOWN — CVE-1999-0620: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0621 UNKNOWN — CVE-1999-0621: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0622 UNKNOWN — CVE-1999-0622: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0623 UNKNOWN — CVE-1999-0623: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0624 UNKNOWN — CVE-1999-0624: The rstat/rstatd service is running.
- CVE-1999-0625 UNKNOWN — CVE-1999-0625: The rpc.rquotad service is running.
- CVE-1999-0626 UNKNOWN — CVE-1999-0626: A version of rusers is running that exposes valid user information to any entity on the network.
- CVE-1999-0627 UNKNOWN — CVE-1999-0627: The rexd service is running, which uses weak authentication that can allow an attacker to execute commands.
- CVE-1999-0628 UNKNOWN — CVE-1999-0628: The rwho/rwhod service is running, which exposes machine status and user information.
- CVE-1999-0629 UNKNOWN — CVE-1999-0629: The ident/identd service is running.
- CVE-1999-0630 UNKNOWN — CVE-1999-0630: The NT Alerter and Messenger services are running.
- CVE-1999-0631 UNKNOWN — CVE-1999-0631: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0632 UNKNOWN — CVE-1999-0632: The RPC portmapper service is running.
- CVE-1999-0633 UNKNOWN — CVE-1999-0633: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0634 UNKNOWN — CVE-1999-0634: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0635 UNKNOWN — CVE-1999-0635: The echo service is running.
- CVE-1999-0636 UNKNOWN — CVE-1999-0636: The discard service is running.
- CVE-1999-0637 UNKNOWN — CVE-1999-0637: The systat service is running.
- CVE-1999-0638 UNKNOWN — CVE-1999-0638: The daytime service is running.
- CVE-1999-0639 UNKNOWN — CVE-1999-0639: The chargen service is running.
- CVE-1999-0640 UNKNOWN — CVE-1999-0640: The Gopher service is running.
- CVE-1999-0641 UNKNOWN — CVE-1999-0641: The UUCP service is running.
- CVE-1999-0642 UNKNOWN — CVE-1999-0642: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0643 UNKNOWN — CVE-1999-0643: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0644 UNKNOWN — CVE-1999-0644: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0645 UNKNOWN — CVE-1999-0645: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0646 UNKNOWN — CVE-1999-0646: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0647 UNKNOWN — CVE-1999-0647: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0648 UNKNOWN — CVE-1999-0648: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0649 UNKNOWN — CVE-1999-0649: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0651 UNKNOWN — CVE-1999-0651: The rsh/rlogin service is running.
- CVE-1999-0650 UNKNOWN — CVE-1999-0650: The netstat service is running, which provides sensitive information to remote attackers.
- CVE-1999-0652 UNKNOWN — CVE-1999-0652: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0653 UNKNOWN — CVE-1999-0653: A component service related to NIS+ is running.
- CVE-1999-0654 UNKNOWN — CVE-1999-0654: The OS/2 or POSIX subsystem in NT is enabled.
- CVE-1999-0655 UNKNOWN — CVE-1999-0655: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific
- CVE-1999-0656 UNKNOWN — CVE-1999-0656: The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs th
- CVE-1999-0657 UNKNOWN — CVE-1999-0657: WinGate is being used.
- CVE-1999-0658 UNKNOWN — CVE-1999-0658: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0659 UNKNOWN — CVE-1999-0659: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configur
- CVE-1999-0660 UNKNOWN — CVE-1999-0660: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific
- CVE-1999-0661 UNKNOWN — CVE-1999-0661: A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such
- CVE-1999-0663 UNKNOWN — CVE-1999-0663: A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has bee
- CVE-1999-0664 UNKNOWN — CVE-1999-0664: An application-critical Windows NT registry key has inappropriate permissions.
- CVE-1999-0665 UNKNOWN — CVE-1999-0665: An application-critical Windows NT registry key has an inappropriate value.
- CVE-1999-0662 UNKNOWN — CVE-1999-0662: A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outda
- CVE-1999-0667 UNKNOWN — CVE-1999-0667: The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denia
- CVE-1999-0668 UNKNOWN — CVE-1999-0668: The scriptlet.typelib ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote att
- CVE-1999-0669 UNKNOWN — CVE-1999-0669: The Eyedog ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to ex
- CVE-1999-0670 UNKNOWN — CVE-1999-0670: Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands.
- CVE-1999-0671 UNKNOWN — CVE-1999-0671: Buffer overflow in ToxSoft NextFTP client through CWD command.
- CVE-1999-0672 UNKNOWN — CVE-1999-0672: Buffer overflow in Fujitsu Chocoa IRC client via IRC channel topics.
- CVE-1999-0673 UNKNOWN — CVE-1999-0673: Buffer overflow in ALMail32 POP3 client via From: or To: headers.
- CVE-1999-0675 UNKNOWN — CVE-1999-0675: Check Point FireWall-1 can be subjected to a denial of service via UDP packets that are sent through VPN-1 to port 0 of
- CVE-1999-0674 UNKNOWN — CVE-1999-0674: The BSD profil system call allows a local user to modify the internal data space of a program via profiling and execve.
- CVE-1999-0676 UNKNOWN — CVE-1999-0676: sdtcm_convert in Solaris 2.6 allows a local user to overwrite sensitive files via a symlink attack.
- CVE-1999-0677 UNKNOWN — CVE-1999-0677: The WebRamp web administration utility has a default password.
- CVE-1999-0678 UNKNOWN — CVE-1999-0678: A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read
- CVE-1999-0679 UNKNOWN — CVE-1999-0679: Buffer overflow in hybrid-6 IRC server commonly used on EFnet allows remote attackers to execute commands via m_invite i
- CVE-1999-0680 UNKNOWN — CVE-1999-0680: Windows NT Terminal Server performs extra work when a client opens a new connection but before it is authenticated, allo
- CVE-1999-0683 UNKNOWN — CVE-1999-0683: Denial of service in Gauntlet Firewall via a malformed ICMP packet.
- CVE-1999-0685 UNKNOWN — CVE-1999-0685: Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.
- CVE-1999-0684 UNKNOWN — CVE-1999-0684: Denial of service in Sendmail 8.8.6 in HPUX.
- CVE-1999-0682 UNKNOWN — CVE-1999-0682: Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if th
- CVE-1999-0686 UNKNOWN — CVE-1999-0686: Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.
- CVE-1999-0687 UNKNOWN — CVE-1999-0687: The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
- CVE-1999-0688 UNKNOWN — CVE-1999-0688: Buffer overflows in HP Software Distributor (SD) for HPUX 10.x and 11.x.
- CVE-1999-0689 UNKNOWN — CVE-1999-0689: The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.
- CVE-1999-0690 UNKNOWN — CVE-1999-0690: HP CDE program includes the current directory in root's PATH variable.
- CVE-1999-0691 UNKNOWN — CVE-1999-0691: Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a lo
- CVE-1999-0692 UNKNOWN — CVE-1999-0692: The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain r
- CVE-1999-0693 UNKNOWN — CVE-1999-0693: Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges
- CVE-1999-0694 UNKNOWN — CVE-1999-0694: Denial of service in AIX ptrace system call allows local users to crash the system.
- CVE-1999-0695 UNKNOWN — CVE-1999-0695: The Sybase PowerDynamo personal web server allows attackers to read arbitrary files through a .. (dot dot) attack.
- CVE-1999-0696 UNKNOWN — CVE-1999-0696: Buffer overflow in CDE Calendar Manager Service Daemon (rpc.cmsd).
- CVE-1999-0697 UNKNOWN — CVE-1999-0697: SCO Doctor allows local users to gain root privileges through a Tools option.
- CVE-1999-0698 UNKNOWN — CVE-1999-0698: Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.
- CVE-1999-0699 UNKNOWN — CVE-1999-0699: The Bluestone Sapphire web server allows session hijacking via easily guessable session IDs.
- CVE-1999-0700 UNKNOWN — CVE-1999-0700: Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file.
- CVE-1999-0701 UNKNOWN — CVE-1999-0701: After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the
- CVE-1999-0702 UNKNOWN — CVE-1999-0702: Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites featur
- CVE-1999-0704 UNKNOWN — CVE-1999-0704: Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
- CVE-1999-0705 UNKNOWN — CVE-1999-0705: Buffer overflow in INN inews program.
- CVE-1999-0703 UNKNOWN — CVE-1999-0703: OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices.
- CVE-1999-0706 UNKNOWN — CVE-1999-0706: Linux xmonisdn package allows local users to gain root privileges by modifying the IFS or PATH environmental variables.
- CVE-1999-0707 UNKNOWN — CVE-1999-0707: The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants wi
- CVE-1999-0708 UNKNOWN — CVE-1999-0708: Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field.
- CVE-1999-0710 UNKNOWN — CVE-1999-0710: The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory
- CVE-1999-0711 UNKNOWN — CVE-1999-0711: The oratclsh interpreter in Oracle 8.x Intelligent Agent for Unix allows local users to execute Tcl commands as root.
- CVE-1999-0712 UNKNOWN — CVE-1999-0712: A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-reada
- CVE-1999-0713 UNKNOWN — CVE-1999-0713: The dtlogin program in Compaq Tru64 UNIX allows local users to gain root privileges.
- CVE-1999-0714 UNKNOWN — CVE-1999-0714: Vulnerability in Compaq Tru64 UNIX edauth command.
- CVE-1999-0716 UNKNOWN — CVE-1999-0716: Buffer overflow in Windows NT 4.0 help file utility via a malformed help file.
- CVE-1999-0715 UNKNOWN — CVE-1999-0715: Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of servic
- CVE-1999-0717 UNKNOWN — CVE-1999-0717: A remote attacker can disable the virus warning mechanism in Microsoft Excel 97.
- CVE-1999-0719 UNKNOWN — CVE-1999-0719: The Guile plugin for the Gnumeric spreadsheet package allows attackers to execute arbitrary code.
- CVE-1999-0720 UNKNOWN — CVE-1999-0720: The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users.
- CVE-1999-0721 UNKNOWN — CVE-1999-0721: Denial of service in Windows NT Local Security Authority (LSA) through a malformed LSA request.
- CVE-1999-0722 UNKNOWN — CVE-1999-0722: The default configuration of Cobalt RaQ2 servers allows remote users to install arbitrary software packages.
- CVE-1999-0723 UNKNOWN — CVE-1999-0723: The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads a
- CVE-1999-0724 UNKNOWN — CVE-1999-0724: Buffer overflow in OpenBSD procfs and fdescfs file systems via uio_offset in the readdir() function.
- CVE-1999-0725 UNKNOWN — CVE-1999-0725: When IIS is run with a default language of Chinese, Korean, or Japanese, it allows a remote attacker to view the source
- CVE-1999-0726 UNKNOWN — CVE-1999-0726: An attacker can conduct a denial of service in Windows NT by executing a program with a malformed file image header.
- CVE-1999-0727 UNKNOWN — CVE-1999-0727: A kernel leak in the OpenBSD kernel allows IPsec packets to be sent unencrypted.
- CVE-1999-0728 UNKNOWN — CVE-1999-0728: A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them.
- CVE-1999-0730 UNKNOWN — CVE-1999-0730: The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack.
- CVE-1999-0731 UNKNOWN — CVE-1999-0731: The KDE klock program allows local users to unlock a session using malformed input.
- CVE-1999-0732 UNKNOWN — CVE-1999-0732: The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic link
- CVE-1999-0733 UNKNOWN — CVE-1999-0733: Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable.
- CVE-1999-0734 UNKNOWN — CVE-1999-0734: A default configuration of CiscoSecure Access Control Server (ACS) allows remote users to modify the server database wit
- CVE-1999-0735 UNKNOWN — CVE-1999-0735: KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.
- CVE-1999-0736 UNKNOWN — CVE-1999-0736: The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
- CVE-1999-0738 UNKNOWN — CVE-1999-0738: The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
- CVE-1999-0737 UNKNOWN — CVE-1999-0737: The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
- CVE-1999-0739 UNKNOWN — CVE-1999-0739: The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
- CVE-1999-0740 UNKNOWN — CVE-1999-0740: Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental
- CVE-1999-0741 UNKNOWN — CVE-1999-0741: QMS CrownNet Unix Utilities for 2060 allows root to log on without a password.
- CVE-1999-0742 UNKNOWN — CVE-1999-0742: The Debian mailman package uses weak authentication, which allows attackers to gain privileges.
- CVE-1999-0743 UNKNOWN — CVE-1999-0743: Trn allows local users to overwrite other users' files via symlinks.
- CVE-1999-0744 UNKNOWN — CVE-1999-0744: Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long
- CVE-1999-0745 UNKNOWN — CVE-1999-0745: Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.
- CVE-1999-0746 UNKNOWN — CVE-1999-0746: A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to con
- CVE-1999-0747 UNKNOWN — CVE-1999-0747: Denial of service in BSDi Symmetric Multiprocessing (SMP) when an fstat call is made when the system has a high CPU load
- CVE-1999-0748 UNKNOWN — CVE-1999-0748: Buffer overflows in Red Hat net-tools package.
- CVE-1999-0749 UNKNOWN — CVE-1999-0749: Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
- CVE-1999-0750 UNKNOWN — CVE-1999-0750: Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the us
- CVE-1999-0751 UNKNOWN — CVE-1999-0751: Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
- CVE-1999-0752 UNKNOWN — CVE-1999-0752: Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.
- CVE-1999-0753 UNKNOWN — CVE-1999-0753: The w3-msql CGI script provided with Mini SQL allows remote attackers to view restricted directories.
- CVE-1999-0754 UNKNOWN — CVE-1999-0754: The INN inndstart program allows local users to gain privileges by specifying an alternate configuration file using the
- CVE-1999-0755 UNKNOWN — CVE-1999-0755: Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option.
- CVE-1999-0759 UNKNOWN — CVE-1999-0759: Buffer overflow in FuseMAIL POP service via long USER and PASS commands.
- CVE-1999-0762 UNKNOWN — CVE-1999-0762: When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" prot
- CVE-1999-0763 UNKNOWN — CVE-1999-0763: NetBSD on a multi-homed host allows ARP packets on one network to modify ARP entries on another connected network.
- CVE-1999-0764 UNKNOWN — CVE-1999-0764: NetBSD allows ARP packets to overwrite static ARP entries.
- CVE-1999-0765 UNKNOWN — CVE-1999-0765: SGI IRIX midikeys program allows local users to modify arbitrary files via a text editor.
- CVE-1999-0766 UNKNOWN — CVE-1999-0766: The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox e
- CVE-1999-0767 UNKNOWN — CVE-1999-0767: Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.
- CVE-1999-0768 UNKNOWN — CVE-1999-0768: Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
- CVE-1999-0769 UNKNOWN — CVE-1999-0769: Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental varia
- CVE-1999-0770 UNKNOWN — CVE-1999-0770: Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to
- CVE-1999-0771 UNKNOWN — CVE-1999-0771: The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary f
- CVE-1999-0772 UNKNOWN — CVE-1999-0772: Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301.
- CVE-1999-0773 UNKNOWN — CVE-1999-0773: Buffer overflow in Solaris lpset program allows local users to gain root access.
- CVE-1999-0774 UNKNOWN — CVE-1999-0774: Buffer overflows in Mars NetWare Emulation (NWE, mars_nwe) package via long directory names.
- CVE-1999-0775 UNKNOWN — CVE-1999-0775: Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due to improper handling
- CVE-1999-0776 UNKNOWN — CVE-1999-0776: Alibaba HTTP server allows remote attackers to read files via a .. (dot dot) attack.
- CVE-1999-0777 UNKNOWN — CVE-1999-0777: IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permiss
- CVE-1999-0778 UNKNOWN — CVE-1999-0778: Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query p
- CVE-1999-0779 UNKNOWN — CVE-1999-0779: Denial of service in HP-UX SharedX recserv program.
- CVE-1999-0781 UNKNOWN — CVE-1999-0781: KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search p
- CVE-1999-0780 UNKNOWN — CVE-1999-0780: KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.
- CVE-1999-0782 UNKNOWN — CVE-1999-0782: KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable.
- CVE-1999-0783 UNKNOWN — CVE-1999-0783: FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file o
- CVE-1999-0785 UNKNOWN — CVE-1999-0785: The INN inndstart program allows local users to gain root privileges via the "pathrun" parameter in the inn.conf file.
- CVE-1999-0786 UNKNOWN — CVE-1999-0786: The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable an
- CVE-1999-0787 UNKNOWN — CVE-1999-0787: The SSH authentication agent follows symlinks via a UNIX domain socket.
- CVE-1999-0788 UNKNOWN — CVE-1999-0788: Arkiea nlservd allows remote attackers to conduct a denial of service.
- CVE-1999-0790 UNKNOWN — CVE-1999-0790: A remote attacker can read information from a Netscape user's cache via JavaScript.
- CVE-1999-0789 UNKNOWN — CVE-1999-0789: Buffer overflow in AIX ftpd in the libc library.
- CVE-1999-0792 UNKNOWN — CVE-1999-0792: ROUTERmate has a default SNMP community name which allows remote attackers to modify its configuration.
- CVE-1999-0791 UNKNOWN — CVE-1999-0791: Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to
- CVE-1999-0793 UNKNOWN — CVE-1999-0793: Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
- CVE-1999-0794 UNKNOWN — CVE-1999-0794: Microsoft Excel does not warn a user when a macro is present in a Symbolic Link (SYLK) format file.
- CVE-1999-0795 UNKNOWN — CVE-1999-0795: The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system in
- CVE-1999-0796 UNKNOWN — CVE-1999-0796: FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks.
- CVE-1999-0797 UNKNOWN — CVE-1999-0797: NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large
- CVE-1999-0798 UNKNOWN — CVE-1999-0798: Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
- CVE-1999-0799 UNKNOWN — CVE-1999-0799: Buffer overflow in bootpd 2.4.3 and earlier via a long boot file location.
- CVE-1999-0801 UNKNOWN — CVE-1999-0801: BMC Patrol allows remote attackers to gain access to an agent by spoofing frames.
- CVE-1999-0802 UNKNOWN — CVE-1999-0802: Buffer overflow in Internet Explorer 5 allows remote attackers to execute commands via a malformed Favorites icon.
- CVE-1999-0803 UNKNOWN — CVE-1999-0803: The fwluser script in AIX eNetwork Firewall allows local users to write to arbitrary files via a symlink attack.
- CVE-1999-0804 UNKNOWN — CVE-1999-0804: Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengt
- CVE-1999-0806 UNKNOWN — CVE-1999-0806: Buffer overflow in Solaris dtprintinfo program.
- CVE-1999-0807 UNKNOWN — CVE-1999-0807: The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local
- CVE-1999-0808 UNKNOWN — CVE-1999-0808: Multiple buffer overflows in ISC DHCP Distribution server (dhcpd) 1.0 and 2.0 allow a remote attacker to cause a denial
- CVE-1999-0810 UNKNOWN — CVE-1999-0810: Denial of service in Samba NETBIOS name service daemon (nmbd).
- CVE-1999-0809 UNKNOWN — CVE-1999-0809: Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected th
- CVE-1999-0811 UNKNOWN — CVE-1999-0811: Buffer overflow in Samba smbd program via a malformed message command.
- CVE-1999-0813 UNKNOWN — CVE-1999-0813: Cfingerd with ALLOW_EXECUTION enabled does not properly drop privileges when it executes a program on behalf of the user
- CVE-1999-0815 UNKNOWN — CVE-1999-0815: Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory ex
- CVE-1999-0816 UNKNOWN — CVE-1999-0816: The Motorola CableRouter allows any remote user to connect to and configure the router on port 1024.
- CVE-1999-0814 UNKNOWN — CVE-1999-0814: Red Hat pump DHCP client allows remote attackers to gain root access in some configurations.
- CVE-1999-0817 UNKNOWN — CVE-1999-0817: Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external progra
- CVE-1999-0818 UNKNOWN — CVE-1999-0818: Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.
- CVE-1999-0819 UNKNOWN — CVE-1999-0819: NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it.
- CVE-1999-0820 UNKNOWN — CVE-1999-0820: FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands.
- CVE-1999-0821 UNKNOWN — CVE-1999-0821: FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.
- CVE-1999-0824 UNKNOWN — CVE-1999-0824: A Windows NT user can use SUBST to map a drive letter to a folder, which is not unmapped after the user logs off, potent
- CVE-1999-0822 UNKNOWN — CVE-1999-0822: Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
- CVE-1999-0823 UNKNOWN — CVE-1999-0823: Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument.
- CVE-1999-0825 UNKNOWN — CVE-1999-0825: The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail.
- CVE-1999-0826 UNKNOWN — CVE-1999-0826: Buffer overflow in FreeBSD angband allows local users to gain privileges.
- CVE-1999-0827 UNKNOWN — CVE-1999-0827: By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option,
- CVE-1999-0828 UNKNOWN — CVE-1999-0828: UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread pe
- CVE-1999-0829 UNKNOWN — CVE-1999-0829: HP Secure Web Console uses weak encryption.
- CVE-1999-0830 UNKNOWN — CVE-1999-0830: Buffer overflow in SCO UnixWare Xsco command via a long argument.
- CVE-1999-0831 UNKNOWN — CVE-1999-0831: Denial of service in Linux syslogd via a large number of connections.
- CVE-1999-0833 UNKNOWN — CVE-1999-0833: Buffer overflow in BIND 8.2 via NXT records.
- CVE-1999-0832 UNKNOWN — CVE-1999-0832: Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname.
- CVE-1999-0834 UNKNOWN — CVE-1999-0834: Buffer overflow in RSAREF2 via the encryption and decryption functions in the RSAREF library.
- CVE-1999-0835 UNKNOWN — CVE-1999-0835: Denial of service in BIND named via malformed SIG records.
- CVE-1999-0836 UNKNOWN — CVE-1999-0836: UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.
- CVE-1999-0837 UNKNOWN — CVE-1999-0837: Denial of service in BIND by improperly closing TCP sessions via so_linger.
- CVE-1999-0838 UNKNOWN — CVE-1999-0838: Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command.
- CVE-1999-0840 UNKNOWN — CVE-1999-0840: Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option.
- CVE-1999-0839 UNKNOWN — CVE-1999-0839: Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after
- CVE-1999-0841 UNKNOWN — CVE-1999-0841: Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.
- CVE-1999-0842 UNKNOWN — CVE-1999-0842: Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0843 UNKNOWN — CVE-1999-0843: Denial of service in Cisco routers running NAT via a PORT command from an FTP client to a Telnet port.
- CVE-1999-0844 UNKNOWN — CVE-1999-0844: Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
- CVE-1999-0845 UNKNOWN — CVE-1999-0845: Buffer overflow in SCO su program allows local users to gain root access via a long username.
- CVE-1999-0846 UNKNOWN — CVE-1999-0846: Denial of service in MDaemon 2.7 via a large number of connection attempts.
- CVE-1999-0847 UNKNOWN — CVE-1999-0847: Buffer overflow in free internet chess server (FICS) program, xboard.
- CVE-1999-0848 UNKNOWN — CVE-1999-0848: Denial of service in BIND named via consuming more than "fdmax" file descriptors.
- CVE-1999-0850 UNKNOWN — CVE-1999-0850: The default permissions for Endymion MailMan allow local users to read email or modify files.
- CVE-1999-0849 UNKNOWN — CVE-1999-0849: Denial of service in BIND named via maxdname.
- CVE-1999-0851 UNKNOWN — CVE-1999-0851: Denial of service in BIND named via naptr.
- CVE-1999-0852 UNKNOWN — CVE-1999-0852: IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /us
- CVE-1999-0853 UNKNOWN — CVE-1999-0853: Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges v
- CVE-1999-0854 UNKNOWN — CVE-1999-0854: Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an err
- CVE-1999-0855 UNKNOWN — CVE-1999-0855: Buffer overflow in FreeBSD gdc program.
- CVE-1999-0856 UNKNOWN — CVE-1999-0856: login in Slackware 7.0 allows remote attackers to identify valid users on the system by reporting an encryption error wh
- CVE-1999-0857 UNKNOWN — CVE-1999-0857: FreeBSD gdc program allows local users to modify files via a symlink attack.
- CVE-1999-0859 UNKNOWN — CVE-1999-0859: Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse prope
- CVE-1999-0858 UNKNOWN — CVE-1999-0858: Internet Explorer 5 allows a remote attacker to modify the IE client's proxy configuration via a malicious Web Proxy Aut
- CVE-1999-0862 UNKNOWN — CVE-1999-0862: Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a pla
- CVE-1999-0860 UNKNOWN — CVE-1999-0860: Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
- CVE-1999-0861 UNKNOWN — CVE-1999-0861: Race condition in the SSL ISAPI filter in IIS and other servers may leak information in plaintext.
- CVE-1999-0863 UNKNOWN — CVE-1999-0863: Buffer overflow in FreeBSD seyon via HOME environmental variable, -emulator argument, -modems argument, or the GUI.
- CVE-1999-0864 UNKNOWN — CVE-1999-0864: UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.
- CVE-1999-0865 UNKNOWN — CVE-1999-0865: Buffer overflow in CommuniGatePro via a long string to the HTTP configuration port.
- CVE-1999-0866 UNKNOWN — CVE-1999-0866: Buffer overflow in UnixWare xauto program allows local users to gain root privilege.
- CVE-1999-0867 UNKNOWN — CVE-1999-0867: Denial of service in IIS 4.0 via a flood of HTTP requests with malformed headers.
- CVE-1999-0868 UNKNOWN — CVE-1999-0868: ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.
- CVE-1999-0869 UNKNOWN — CVE-1999-0869: Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka
- CVE-1999-0871 UNKNOWN — CVE-1999-0871: Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame
- CVE-1999-0872 UNKNOWN — CVE-1999-0872: Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab
- CVE-1999-0873 UNKNOWN — CVE-1999-0873: Buffer overflow in Skyfull mail server via MAIL FROM command.
- CVE-1999-0870 UNKNOWN — CVE-1999-0870: Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload contr
- CVE-1999-0874 UNKNOWN — CVE-1999-0874: Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .
- CVE-1999-0875 UNKNOWN — CVE-1999-0875: DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes.
- CVE-1999-0876 UNKNOWN — CVE-1999-0876: Buffer overflow in Internet Explorer 4.0 via EMBED tag.
- CVE-1999-0877 UNKNOWN — CVE-1999-0877: Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME.
- CVE-1999-0878 UNKNOWN — CVE-1999-0878: Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR.
- CVE-1999-0879 UNKNOWN — CVE-1999-0879: Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables i
- CVE-1999-0881 UNKNOWN — CVE-1999-0881: Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0882 UNKNOWN — CVE-1999-0882: Falcon web server allows remote attackers to determine the absolute path of the web root via long file names.
- CVE-1999-0880 UNKNOWN — CVE-1999-0880: Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly.
- CVE-1999-0883 UNKNOWN — CVE-1999-0883: Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search e
- CVE-1999-0884 UNKNOWN — CVE-1999-0884: The Zeus web server administrative interface uses weak encryption for its passwords.
- CVE-1999-0885 UNKNOWN — CVE-1999-0885: Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL.
- CVE-1999-0886 UNKNOWN — CVE-1999-0886: The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Man
- CVE-1999-0887 UNKNOWN — CVE-1999-0887: FTGate web interface server allows remote attackers to read files via a .. (dot dot) attack.
- CVE-1999-0888 UNKNOWN — CVE-1999-0888: dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variab
- CVE-1999-0889 UNKNOWN — CVE-1999-0889: Cisco 675 routers running CBOS allow remote attackers to establish telnet sessions if an exec or superuser password has
- CVE-1999-0890 UNKNOWN — CVE-1999-0890: iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error.
- CVE-1999-0891 UNKNOWN — CVE-1999-0891: The "download behavior" in Internet Explorer 5 allows remote attackers to read arbitrary files via a server-side redirec
- CVE-1999-0892 UNKNOWN — CVE-1999-0892: Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the f
- CVE-1999-0893 UNKNOWN — CVE-1999-0893: userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack.
- CVE-1999-0894 UNKNOWN — CVE-1999-0894: Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.
- CVE-1999-0895 UNKNOWN — CVE-1999-0895: Firewall-1 does not properly restrict access to LDAP attributes.
- CVE-1999-0896 UNKNOWN — CVE-1999-0896: Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands
- CVE-1999-0897 UNKNOWN — CVE-1999-0897: iChat ROOMS Webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0898 UNKNOWN — CVE-1999-0898: Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service
- CVE-1999-0899 UNKNOWN — CVE-1999-0899: The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that
- CVE-1999-0900 UNKNOWN — CVE-1999-0900: Buffer overflow in rpc.yppasswdd allows a local user to gain privileges via MD5 hash generation.
- CVE-1999-0901 UNKNOWN — CVE-1999-0901: ypserv allows a local user to modify the GECOS and login shells of other users.
- CVE-1999-0902 UNKNOWN — CVE-1999-0902: ypserv allows local administrators to modify password tables.
- CVE-1999-0903 UNKNOWN — CVE-1999-0903: genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767.
- CVE-1999-0904 UNKNOWN — CVE-1999-0904: Buffer overflow in BFTelnet allows remote attackers to cause a denial of service via a long username.
- CVE-1999-0905 UNKNOWN — CVE-1999-0905: Denial of service in Axent Raptor firewall via malformed zero-length IP options.
- CVE-1999-0907 UNKNOWN — CVE-1999-0907: sccw allows local users to read arbitrary files.
- CVE-1999-0906 UNKNOWN — CVE-1999-0906: Buffer overflow in sccw allows local users to gain root access via the HOME environmental variable.
- CVE-1999-0908 UNKNOWN — CVE-1999-0908: Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result o
- CVE-1999-0909 UNKNOWN — CVE-1999-0909: Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with
- CVE-1999-0910 UNKNOWN — CVE-1999-0910: Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be c
- CVE-1999-0911 UNKNOWN — CVE-1999-0911: Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CW
- CVE-1999-0912 UNKNOWN — CVE-1999-0912: FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
- CVE-1999-0913 UNKNOWN — CVE-1999-0913: dfire.cgi script in Dragon-Fire IDS allows remote users to execute commands via shell metacharacters.
- CVE-1999-0914 UNKNOWN — CVE-1999-0914: Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.
- CVE-1999-0916 UNKNOWN — CVE-1999-0916: WebTrends software stores account names and passwords in a file which does not have restricted access permissions.
- CVE-1999-0915 UNKNOWN — CVE-1999-0915: URL Live! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0917 UNKNOWN — CVE-1999-0917: The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files.
- CVE-1999-0918 UNKNOWN — CVE-1999-0918: Denial of service in various Windows systems via malformed, fragmented IGMP packets.
- CVE-1999-0919 UNKNOWN — CVE-1999-0919: A memory leak in a Motorola CableRouter allows remote attackers to conduct a denial of service via a large number of tel
- CVE-1999-0921 UNKNOWN — CVE-1999-0921: BMC Patrol allows any remote attacker to flood its UDP port, causing a denial of service.
- CVE-1999-0920 UNKNOWN — CVE-1999-0920: Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD com
- CVE-1999-0925 UNKNOWN — CVE-1999-0925: UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers.
- CVE-1999-0926 UNKNOWN — CVE-1999-0926: Apache allows remote attackers to conduct a denial of service via a large number of MIME headers.
- CVE-1999-0927 UNKNOWN — CVE-1999-0927: NTMail allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0929 UNKNOWN — CVE-1999-0929: Novell NetWare with Novell-HTTP-Server or YAWN web servers allows remote attackers to conduct a denial of service via a
- CVE-1999-0928 UNKNOWN — CVE-1999-0928: Buffer overflow in SmartDesk WebSuite allows remote attackers to cause a denial of service via a long URL.
- CVE-1999-0930 UNKNOWN — CVE-1999-0930: wwwboard allows a remote attacker to delete message board articles via a malformed argument.
- CVE-1999-0931 UNKNOWN — CVE-1999-0931: Buffer overflow in Mediahouse Statistics Server allows remote attackers to execute commands.
- CVE-1999-0933 UNKNOWN — CVE-1999-0933: TeamTrack web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0932 UNKNOWN — CVE-1999-0932: Mediahouse Statistics Server allows remote attackers to read the administrator password, which is stored in cleartext in
- CVE-1999-0935 UNKNOWN — CVE-1999-0935: classifieds.cgi allows remote attackers to execute arbitrary commands by specifying them in a hidden variable in a CGI f
- CVE-1999-0934 UNKNOWN — CVE-1999-0934: classifieds.cgi allows remote attackers to read arbitrary files via shell metacharacters.
- CVE-1999-0936 UNKNOWN — CVE-1999-0936: BNBSurvey survey.cgi program allows remote attackers to execute commands via shell metacharacters.
- CVE-1999-0937 UNKNOWN — CVE-1999-0937: BNBForm allows remote attackers to read arbitrary files via the automessage hidden form variable.
- CVE-1999-0938 UNKNOWN — CVE-1999-0938: MBone SDR Package allows remote attackers to execute commands via shell metacharacters in Session Initiation Protocol (S
- CVE-1999-0939 UNKNOWN — CVE-1999-0939: Denial of service in Debian IRC Epic/epic4 client via a long string.
- CVE-1999-0940 UNKNOWN — CVE-1999-0940: Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages.
- CVE-1999-0943 UNKNOWN — CVE-1999-0943: Buffer overflow in OpenLink 3.2 allows remote attackers to gain privileges via a long GET request to the web configurato
- CVE-1999-0941 UNKNOWN — CVE-1999-0941: Mutt mail client allows a remote attacker to execute commands via shell metacharacters.
- CVE-1999-0942 UNKNOWN — CVE-1999-0942: UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a
- CVE-1999-0944 UNKNOWN — CVE-1999-0944: IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections.
- CVE-1999-0946 UNKNOWN — CVE-1999-0946: Buffer overflow in Yamaha MidiPlug via a Text variable in an EMBED tag.
- CVE-1999-0947 UNKNOWN — CVE-1999-0947: AN-HTTPd provides example CGI scripts test.bat, input.bat, input2.bat, and envout.bat, which allow remote attackers to e
- CVE-1999-0948 UNKNOWN — CVE-1999-0948: Buffer overflow in uum program for Canna input system allows local users to gain root privileges.
- CVE-1999-0949 UNKNOWN — CVE-1999-0949: Buffer overflow in canuum program for Canna input system allows local users to gain root privileges.
- CVE-1999-0950 UNKNOWN — CVE-1999-0950: Buffer overflow in WFTPD FTP server allows remote attackers to gain root access via a series of MKD and CWD commands tha
- CVE-1999-0951 UNKNOWN — CVE-1999-0951: Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands.
- CVE-1999-0952 UNKNOWN — CVE-1999-0952: Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.
- CVE-1999-0953 UNKNOWN — CVE-1999-0953: WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attacker
- CVE-1999-0954 UNKNOWN — CVE-1999-0954: WWWBoard has a default username and default password.
- CVE-1999-0955 UNKNOWN — CVE-1999-0955: Race condition in wu-ftpd and BSDI ftpd allows remote attackers to gain root access via the SITE EXEC command.
- CVE-1999-0957 UNKNOWN — CVE-1999-0957: MajorCool mj_key_cache program allows local users to modify files via a symlink attack.
- CVE-1999-0956 UNKNOWN — CVE-1999-0956: The NeXT NetInfo _writers property allows local users to gain root privileges or conduct a denial of service.
- CVE-1999-0958 UNKNOWN — CVE-1999-0958: sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack.
- CVE-1999-0959 UNKNOWN — CVE-1999-0959: IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.
- CVE-1999-0960 UNKNOWN — CVE-1999-0960: IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.
- CVE-1999-0961 UNKNOWN — CVE-1999-0961: HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creation.
- CVE-1999-0962 UNKNOWN — CVE-1999-0962: Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.
- CVE-1999-0963 UNKNOWN — CVE-1999-0963: FreeBSD mount_union command allows local users to gain root privileges via a symlink attack.
- CVE-1999-0964 UNKNOWN — CVE-1999-0964: Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCAL
- CVE-1999-0966 UNKNOWN — CVE-1999-0966: Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].
- CVE-1999-0967 UNKNOWN — CVE-1999-0967: Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local
- CVE-1999-0968 UNKNOWN — CVE-1999-0968: Buffer overflow in BNC IRC proxy allows remote attackers to gain privileges.
- CVE-1999-0965 UNKNOWN — CVE-1999-0965: Race condition in xterm allows local users to modify arbitrary files via the logging option.
- CVE-1999-0969 UNKNOWN — CVE-1999-0969: The Windows NT RPC service allows remote attackers to conduct a denial of service using spoofed malformed RPC packets wh
- CVE-1999-0970 UNKNOWN — CVE-1999-0970: The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which cau
- CVE-1999-0971 UNKNOWN — CVE-1999-0971: Buffer overflow in Exim allows local users to gain root privileges via a long :include: option in a .forward file.
- CVE-1999-0972 UNKNOWN — CVE-1999-0972: Buffer overflow in Xshipwars xsw program.
- CVE-1999-0973 UNKNOWN — CVE-1999-0973: Buffer overflow in Solaris snoop program allows remote attackers to gain root privileges via a long domain name when sno
- CVE-1999-0974 UNKNOWN — CVE-1999-0974: Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquota
- CVE-1999-0975 UNKNOWN — CVE-1999-0975: The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafi
- CVE-1999-0977 UNKNOWN — CVE-1999-0977: Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request.
- CVE-1999-0976 UNKNOWN — CVE-1999-0976: Sendmail allows local users to reinitialize the aliases database via the newaliases command, then cause a denial of serv
- CVE-1999-0978 UNKNOWN — CVE-1999-0978: htdig allows remote attackers to execute commands via filenames with shell metacharacters.
- CVE-1999-0979 UNKNOWN — CVE-1999-0979: The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to
- CVE-1999-0980 UNKNOWN — CVE-1999-0980: Windows NT Service Control Manager (SCM) allows remote attackers to cause a denial of service via a malformed argument i
- CVE-1999-0981 UNKNOWN — CVE-1999-0981: Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-si
- CVE-1999-0982 UNKNOWN — CVE-1999-0982: The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable fi
- CVE-1999-0983 UNKNOWN — CVE-1999-0983: Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the doma
- CVE-1999-0984 UNKNOWN — CVE-1999-0984: Matt's Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
- CVE-1999-0985 UNKNOWN — CVE-1999-0985: CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
- CVE-1999-0986 UNKNOWN — CVE-1999-0986: The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (r
- CVE-1999-0987 UNKNOWN — CVE-1999-0987: Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of
- CVE-1999-0988 UNKNOWN — CVE-1999-0988: UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
- CVE-1999-0989 UNKNOWN — CVE-1999-0989: Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the
- CVE-1999-0990 UNKNOWN — CVE-1999-0990: Error messages generated by gdm with the VerboseAuth setting allows an attacker to identify valid users on a system.
- CVE-1999-0991 UNKNOWN — CVE-1999-0991: Buffer overflow in GoodTech Telnet Server NT allows remote users to cause a denial of service via a long login name.
- CVE-1999-0992 UNKNOWN — CVE-1999-0992: HP VirtualVault with the PHSS_17692 patch allows unprivileged processes to bypass access restrictions via the Trusted Ga
- CVE-1999-0993 UNKNOWN — CVE-1999-0993: Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cac
- CVE-1999-0994 UNKNOWN — CVE-1999-0994: Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to cra
- CVE-1999-0995 UNKNOWN — CVE-1999-0995: Windows NT Local Security Authority (LSA) allows remote attackers to cause a denial of service via malformed arguments t
- CVE-1999-0996 UNKNOWN — CVE-1999-0996: Buffer overflow in Infoseek Ultraseek search engine allows remote attackers to execute commands via a long GET request.
- CVE-1999-0999 UNKNOWN — CVE-1999-0999: Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet.
- CVE-1999-0997 UNKNOWN — CVE-1999-0997: wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted
- CVE-1999-0998 UNKNOWN — CVE-1999-0998: Cisco Cache Engine allows an attacker to replace content in the cache.
- CVE-1999-1000 UNKNOWN — CVE-1999-1000: The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics.
- CVE-1999-1001 UNKNOWN — CVE-1999-1001: Cisco Cache Engine allows a remote attacker to gain access via a null username and password.
- CVE-1999-1002 UNKNOWN — CVE-1999-1002: Netscape Navigator uses weak encryption for storing a user's Netscape mail password.
- CVE-1999-1003 UNKNOWN — CVE-1999-1003: War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.
- CVE-1999-1004 UNKNOWN — CVE-1999-1004: Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command.
- CVE-1999-1005 UNKNOWN — CVE-1999-1005: Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) a
- CVE-1999-1006 UNKNOWN — CVE-1999-1006: Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP paramet
- CVE-1999-1007 UNKNOWN — CVE-1999-1007: Buffer overflow in VDO Live Player allows remote attackers to execute commands on the VDO client via a malformed .vdo fi
- CVE-1999-1008 UNKNOWN — CVE-1999-1008: xsoldier program allows local users to gain root access via a long argument.
- CVE-1999-1009 UNKNOWN — CVE-1999-1009: The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to
- CVE-1999-1010 UNKNOWN — CVE-1999-1010: An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.
- CVE-1999-1011 UNKNOWN — CVE-1999-1011: The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x expose
- CVE-1999-1012 UNKNOWN — CVE-1999-1012: SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash
- CVE-1999-1013 UNKNOWN — CVE-1999-1013: named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via t
- CVE-1999-1014 UNKNOWN — CVE-1999-1014: Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
- CVE-1999-1015 UNKNOWN — CVE-1999-1015: Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denia
- CVE-1999-1016 UNKNOWN — CVE-1999-1016: Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudor
- CVE-1999-1017 UNKNOWN — CVE-1999-1017: Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting
- CVE-1999-1018 UNKNOWN — CVE-1999-1018: IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, wh
- CVE-1999-1019 UNKNOWN — CVE-1999-1019: SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which al
- CVE-1999-1020 UNKNOWN — CVE-1999-1020: The installation of Novell Netware NDS 5.99 provides an unauthenticated client with Read access for the tree, which allo
- CVE-1999-1021 UNKNOWN — CVE-1999-1021: NFS on SunOS 4.1 through 4.1.2 ignores the high order 16 bits in a 32 bit UID, which allows a local user to gain root ac
- CVE-1999-1022 UNKNOWN — CVE-1999-1022: serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execut
- CVE-1999-1023 UNKNOWN — CVE-1999-1023: useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argum
- CVE-1999-1025 UNKNOWN — CVE-1999-1025: CDE screen lock program (screenlock) on Solaris 2.6 does not properly lock an unprivileged user's console session when t
- CVE-1999-1026 UNKNOWN — CVE-1999-1026: aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on
- CVE-1999-1027 UNKNOWN — CVE-1999-1027: Solaris 2.6 HW3/98 installs admintool with world-writable permissions, which allows local users to gain privileges by re
- CVE-1999-1028 UNKNOWN — CVE-1999-1028: Symantec pcAnywhere 8.0 allows remote attackers to cause a denial of service (CPU utilization) via a large amount of dat
- CVE-1999-1029 UNKNOWN — CVE-1999-1029: SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum
- CVE-1999-1030 UNKNOWN — CVE-1999-1030: counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newl
- CVE-1999-1031 UNKNOWN — CVE-1999-1031: counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via a long argument.
- CVE-1999-1032 UNKNOWN — CVE-1999-1032: Vulnerability in LAT/Telnet Gateway (lattelnet) on Ultrix 4.1 and 4.2 allows attackers to gain root privileges.
- CVE-1999-1033 UNKNOWN — CVE-1999-1033: Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can
- CVE-1999-1034 UNKNOWN — CVE-1999-1034: Vulnerability in login in AT&T System V Release 4 allows local users to gain privileges.
- CVE-1999-1035 UNKNOWN — CVE-1999-1035: IIS 3.0 and 4.0 on x86 and Alpha allows remote attackers to cause a denial of service (hang) via a malformed GET request
- CVE-1999-1036 UNKNOWN — CVE-1999-1036: COPS 1.04 allows local users to overwrite or create arbitrary files via a symlink attack on temporary files in (1) res_d
- CVE-1999-1037 UNKNOWN — CVE-1999-1037: rex.satan in SATAN 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/rex.$$ file.
- CVE-1999-1038 UNKNOWN — CVE-1999-1038: Tiger 2.2.3 allows local users to overwrite arbitrary files via a symlink attack on various temporary files in Tiger's d
- CVE-1999-1039 UNKNOWN — CVE-1999-1039: Vulnerability in (1) diskalign and (2) diskperf in IRIX 6.4 patches 2291 and 2848 allow a local user to create root-owne
- CVE-1999-1040 UNKNOWN — CVE-1999-1040: Vulnerabilities in (1) ipxchk and (2) ipxlink in NetWare Client 1.0 on IRIX 6.3 and 6.4 allows local users to gain root
- CVE-1999-1041 UNKNOWN — CVE-1999-1041: Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a lo
- CVE-1999-1042 UNKNOWN — CVE-1999-1042: Cisco Resource Manager (CRM) 1.0 and 1.1 creates world-readable log files and temporary files, which may expose sensitiv
- CVE-1999-1043 UNKNOWN — CVE-1999-1043: Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, whic
- CVE-1999-1044 UNKNOWN — CVE-1999-1044: Vulnerability in Advanced File System Utility (advfs) in Digital UNIX 4.0 through 4.0d allows local users to gain privil
- CVE-1999-1045 UNKNOWN — CVE-1999-1045: pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malforme
- CVE-1999-1046 UNKNOWN — CVE-1999-1046: Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbi
- CVE-1999-1047 UNKNOWN — CVE-1999-1047: When BSDI patches for Gauntlet 5.0 BSDI are installed in a particular order, Gauntlet allows remote attackers to bypass
- CVE-1999-1048 UNKNOWN — CVE-1999-1048: Buffer overflow in bash 2.0.0, 1.4.17, and other versions allows local attackers to gain privileges by creating an extre
- CVE-1999-1049 UNKNOWN — CVE-1999-1049: ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication re
- CVE-1999-1050 UNKNOWN — CVE-1999-1050: Directory traversal vulnerability in Matt Wright FormHandler.cgi script allows remote attackers to read arbitrary files
- CVE-1999-1051 UNKNOWN — CVE-1999-1051: Default configuration in Matt Wright FormHandler.cgi script allows arbitrary directories to be used for attachments, and
- CVE-1999-1052 UNKNOWN — CVE-1999-1052: Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and
- CVE-1999-1053 UNKNOWN — CVE-1999-1053: guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo
- CVE-1999-1054 UNKNOWN — CVE-1999-1054: The default configuration of FLEXlm license manager 6.0d, and possibly other versions, allows remote attackers to shut d
- CVE-1999-1055 UNKNOWN — CVE-1999-1055: Microsoft Excel 97 does not warn the user before executing worksheet functions, which could allow attackers to execute a
- CVE-1999-1057 UNKNOWN — CVE-1999-1057: VMS 4.0 through 5.3 allows local users to gain privileges via the ANALYZE/PROCESS_DUMP dcl command.
- CVE-1999-1056 UNKNOWN — CVE-1999-1056: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1395. Reason: This candidate is a duplicate of
- CVE-1999-1058 UNKNOWN — CVE-1999-1058: Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly e
- CVE-1999-1059 UNKNOWN — CVE-1999-1059: Vulnerability in rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems allows remote attackers to execute ar
- CVE-1999-1060 UNKNOWN — CVE-1999-1060: Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly exec
- CVE-1999-1061 UNKNOWN — CVE-1999-1061: HP Laserjet printers with JetDirect cards, when configured with TCP/IP, can be configured without a password, which allo
- CVE-1999-1062 UNKNOWN — CVE-1999-1062: HP Laserjet printers with JetDirect cards, when configured with TCP/IP, allow remote attackers to bypass print filters b
- CVE-1999-1063 UNKNOWN — CVE-1999-1063: CDomain whois_raw.cgi whois CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in
- CVE-1999-1064 UNKNOWN — CVE-1999-1064: Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly e
- CVE-1999-1065 UNKNOWN — CVE-1999-1065: Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execut
- CVE-1999-1066 UNKNOWN — CVE-1999-1066: Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote at
- CVE-1999-1067 UNKNOWN — CVE-1999-1067: SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status inform
- CVE-1999-1068 UNKNOWN — CVE-1999-1068: Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a
- CVE-1999-1069 UNKNOWN — CVE-1999-1069: Directory traversal vulnerability in carbo.dll in iCat Carbo Server 3.0.0 allows remote attackers to read arbitrary file
- CVE-1999-1070 UNKNOWN — CVE-1999-1070: Buffer overflow in ping CGI program in Xylogics Annex terminal service allows remote attackers to cause a denial of serv
- CVE-1999-1071 UNKNOWN — CVE-1999-1071: Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which
- CVE-1999-1072 UNKNOWN — CVE-1999-1072: Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the worl
- CVE-1999-1073 UNKNOWN — CVE-1999-1073: Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encryp
- CVE-1999-1074 UNKNOWN — CVE-1999-1074: Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could a
- CVE-1999-1075 UNKNOWN — CVE-1999-1075: inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently liste
- CVE-1999-1076 UNKNOWN — CVE-1999-1076: Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the
- CVE-1999-1077 UNKNOWN — CVE-1999-1077: Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the prog
- CVE-1999-1078 UNKNOWN — CVE-1999-1078: WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily d
- CVE-1999-1079 UNKNOWN — CVE-1999-1079: Vulnerability in ptrace in AIX 4.3 allows local users to gain privileges by attaching to a setgid program.
- CVE-1999-1080 UNKNOWN — CVE-1999-1080: rmmount in SunOS 5.7 may mount file systems without the nosuid flag set, contrary to the documentation and its use in pr
- CVE-1999-1082 UNKNOWN — CVE-1999-1082: Directory traversal vulnerability in Jana proxy web server 1.40 allows remote attackers to ready arbitrary files via a "
- CVE-1999-1083 UNKNOWN — CVE-1999-1083: Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .
- CVE-1999-1084 UNKNOWN — CVE-1999-1084: The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify
- CVE-1999-1085 UNKNOWN — CVE-1999-1085: SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) mod
- CVE-1999-1086 UNKNOWN — CVE-1999-1086: Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain a
- CVE-1999-1087 UNKNOWN — CVE-1999-1087: Internet Explorer 4 treats a 32-bit number ("dotless IP address") in the a URL as the hostname instead of an IP address,
- CVE-1999-1088 UNKNOWN — CVE-1999-1088: Vulnerability in chsh command in HP-UX 9.X through 10.20 allows local users to gain privileges.
- CVE-1999-1089 UNKNOWN — CVE-1999-1089: Buffer overflow in chfn command in HP-UX 9.X through 10.20 allows local users to gain privileges via a long command line
- CVE-1999-1090 UNKNOWN — CVE-1999-1090: The default configuration of NCSA Telnet package for Macintosh and PC enables FTP, even though it does not include an "f
- CVE-1999-1092 UNKNOWN — CVE-1999-1092: tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inpu
- CVE-1999-1093 UNKNOWN — CVE-1999-1093: Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlie
- CVE-1999-1094 UNKNOWN — CVE-1999-1094: Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long U
- CVE-1999-1095 UNKNOWN — CVE-1999-1095: sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are wri
- CVE-1999-1096 UNKNOWN — CVE-1999-1096: Buffer overflow in kscreensaver in KDE klock allows local users to gain root privileges via a long HOME environmental va
- CVE-1999-1097 UNKNOWN — CVE-1999-1097: Microsoft NetMeeting 2.1 allows one client to read the contents of another client's clipboard via a CTRL-C in the chat b
- CVE-1999-1098 UNKNOWN — CVE-1999-1098: Vulnerability in BSD Telnet client with encryption and Kerberos 4 authentication allows remote attackers to decrypt the
- CVE-1999-1099 UNKNOWN — CVE-1999-1099: Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error st
- CVE-1999-1100 UNKNOWN — CVE-1999-1100: Cisco PIX Private Link 4.1.6 and earlier does not properly process certain commands in the configuration file, which red
- CVE-1999-1101 UNKNOWN — CVE-1999-1101: Kabsoftware Lydia utility uses weak encryption to store user passwords in the lydia.ini file, which allows local users t
- CVE-1999-1102 UNKNOWN — CVE-1999-1102: lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite
- CVE-1999-1103 UNKNOWN — CVE-1999-1103: dxconsole in DEC OSF/1 3.2C and earlier allows local users to read arbitrary files by specifying the file with the -file
- CVE-1999-1104 UNKNOWN — CVE-1999-1104: Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows lo
- CVE-1999-1105 UNKNOWN — CVE-1999-1105: Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an ad
- CVE-1999-1106 UNKNOWN — CVE-1999-1106: Buffer overflow in kppp in KDE allows local users to gain root access via a long -c (account_name) command line argument
- CVE-1999-1107 UNKNOWN — CVE-1999-1107: Buffer overflow in kppp in KDE allows local users to gain root access via a long PATH environmental variable.
- CVE-1999-1108 UNKNOWN — CVE-1999-1108: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1107. Reason: This candidate is a duplicate of
- CVE-1999-1109 UNKNOWN — CVE-1999-1109: Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then di
- CVE-1999-1110 UNKNOWN — CVE-1999-1110: Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not
- CVE-1999-1111 UNKNOWN — CVE-1999-1111: Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mech
- CVE-1999-1112 UNKNOWN — CVE-1999-1112: Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after t
- CVE-1999-1114 UNKNOWN — CVE-1999-1114: Buffer overflow in Korn Shell (ksh) suid_exec program on IRIX 6.x and earlier, and possibly other operating systems, all
- CVE-1999-1113 UNKNOWN — CVE-1999-1113: Buffer overflow in Eudora Internet Mail Server (EIMS) 2.01 and earlier on MacOS systems allows remote attackers to cause
- CVE-1999-1115 UNKNOWN — CVE-1999-1115: Vulnerability in the /etc/suid_exec program in HP Apollo Domain/OS sr10.2 and sr10.3 beta, related to the Korn Shell (ks
- CVE-1999-1116 UNKNOWN — CVE-1999-1116: Vulnerability in runpriv in Indigo Magic System Administration subsystem of SGI IRIX 6.3 and 6.4 allows local users to g
- CVE-1999-1117 UNKNOWN — CVE-1999-1117: lquerypv in AIX 4.1 and 4.2 allows local users to read arbitrary files by specifying the file in the -h command line par
- CVE-1999-1118 UNKNOWN — CVE-1999-1118: ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.
- CVE-1999-1119 UNKNOWN — CVE-1999-1119: FTP installation script anon.ftp in AIX insecurely configures anonymous FTP, which allows remote attackers to execute ar
- CVE-1999-1120 UNKNOWN — CVE-1999-1120: netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable progra
- CVE-1999-1121 UNKNOWN — CVE-1999-1121: The default configuration for UUCP in AIX before 3.2 allows local users to gain root privileges.
- CVE-1999-1122 UNKNOWN — CVE-1999-1122: Vulnerability in restore in SunOS 4.0.3 and earlier allows local users to gain privileges.
- CVE-1999-1124 UNKNOWN — CVE-1999-1124: HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports
- CVE-1999-1123 UNKNOWN — CVE-1999-1123: The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) ma
- CVE-1999-1126 UNKNOWN — CVE-1999-1126: Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to o
- CVE-1999-1125 UNKNOWN — CVE-1999-1125: Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allo
- CVE-1999-1127 UNKNOWN — CVE-1999-1127: Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a
- CVE-1999-1129 UNKNOWN — CVE-1999-1129: Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forg
- CVE-1999-1128 UNKNOWN — CVE-1999-1128: Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, wh
- CVE-1999-1130 UNKNOWN — CVE-1999-1130: Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remo
- CVE-1999-1131 UNKNOWN — CVE-1999-1131: Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows atta
- CVE-1999-1132 UNKNOWN — CVE-1999-1132: Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a
- CVE-1999-1133 UNKNOWN — CVE-1999-1133: HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfil
- CVE-1999-1134 UNKNOWN — CVE-1999-1134: Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHS
- CVE-1999-1135 UNKNOWN — CVE-1999-1135: Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.
- CVE-1999-1136 UNKNOWN — CVE-1999-1136: Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data t
- CVE-1999-1137 UNKNOWN — CVE-1999-1137: The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from
- CVE-1999-1138 UNKNOWN — CVE-1999-1138: SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and
- CVE-1999-1139 UNKNOWN — CVE-1999-1139: Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and
- CVE-1999-1140 UNKNOWN — CVE-1999-1140: Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.
- CVE-1999-1141 UNKNOWN — CVE-1999-1141: Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by ente
- CVE-1999-1142 UNKNOWN — CVE-1999-1142: SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically
- CVE-1999-1143 UNKNOWN — CVE-1999-1143: Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid
- CVE-1999-1144 UNKNOWN — CVE-1999-1144: Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileg
- CVE-1999-1145 UNKNOWN — CVE-1999-1145: Vulnerability in Glance programs in GlancePlus for HP-UX 10.20 and earlier allows local users to access arbitrary files
- CVE-1999-1146 UNKNOWN — CVE-1999-1146: Vulnerability in Glance and gpm programs in GlancePlus for HP-UX 9.x and earlier allows local users to access arbitrary
- CVE-1999-1147 UNKNOWN — CVE-1999-1147: Buffer overflow in Platinum Policy Compliance Manager (PCM) 7.0 allows remote attackers to execute arbitrary commands vi
- CVE-1999-1148 UNKNOWN — CVE-1999-1148: FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many p
- CVE-1999-1149 UNKNOWN — CVE-1999-1149: Buffer overflow in CSM Proxy 4.1 allows remote attackers to cause a denial of service (crash) via a long string to the F
- CVE-1999-1150 UNKNOWN — CVE-1999-1150: Livingston Portmaster routers running ComOS use the same initial sequence number (ISN) for TCP connections, which allows
- CVE-1999-1151 UNKNOWN — CVE-1999-1151: Compaq/Microcom 6000 Access Integrator does not cause a session timeout after prompting for a username or password, whic
- CVE-1999-1152 UNKNOWN — CVE-1999-1152: Compaq/Microcom 6000 Access Integrator does not disconnect a client after a certain number of failed login attempts, whi
- CVE-1999-1153 UNKNOWN — CVE-1999-1153: HAMcards Postcard CGI script 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the r
- CVE-1999-1154 UNKNOWN — CVE-1999-1154: LakeWeb Filemail CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in the recipi
- CVE-1999-1155 UNKNOWN — CVE-1999-1155: LakeWeb Mail List CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in the recip
- CVE-1999-1156 UNKNOWN — CVE-1999-1156: BisonWare FTP Server 4.1 and earlier allows remote attackers to cause a denial of service via a malformed PORT command t
- CVE-1999-1157 UNKNOWN — CVE-1999-1157: Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Addr
- CVE-1999-1158 UNKNOWN — CVE-1999-1158: Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4
- CVE-1999-1159 UNKNOWN — CVE-1999-1159: SSH 2.0.11 and earlier allows local users to request remote forwarding from privileged ports without being root.
- CVE-1999-1160 UNKNOWN — CVE-1999-1160: Vulnerability in ftpd/kftpd in HP-UX 10.x and 9.x allows local and possibly remote users to gain root privileges.
- CVE-1999-1161 UNKNOWN — CVE-1999-1161: Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing ppl to core dump.
- CVE-1999-1162 UNKNOWN — CVE-1999-1162: Vulnerability in passwd in SCO UNIX 4.0 and earlier allows attackers to cause a denial of service by preventing users fr
- CVE-1999-1163 UNKNOWN — CVE-1999-1163: Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via
- CVE-1999-1164 UNKNOWN — CVE-1999-1164: Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with th
- CVE-1999-1165 UNKNOWN — CVE-1999-1165: GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (
- CVE-1999-1166 UNKNOWN — CVE-1999-1166: Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by acce
- CVE-1999-1167 UNKNOWN — CVE-1999-1167: Cross-site scripting vulnerability in Third Voice Web annotation utility allows remote users to read sensitive data and
- CVE-1999-1168 UNKNOWN — CVE-1999-1168: install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change
- CVE-1999-1169 UNKNOWN — CVE-1999-1169: nobo 1.2 allows remote attackers to cause a denial of service (crash) via a series of large UDP packets.
- CVE-1999-1170 UNKNOWN — CVE-1999-1170: IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" r
- CVE-1999-1171 UNKNOWN — CVE-1999-1171: IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags"
- CVE-1999-1173 UNKNOWN — CVE-1999-1173: Corel Word Perfect 8 for Linux creates a temporary working directory with world-writable permissions, which allows local
- CVE-1999-1175 UNKNOWN — CVE-1999-1175: Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, whic
- CVE-1999-1172 UNKNOWN — CVE-1999-1172: By design, Maximizer Enterprise 4 calendar and address book program allows arbitrary users to modify the calendar of oth
- CVE-1999-1176 UNKNOWN — CVE-1999-1176: Buffer overflow in cidentd ident daemon allows local users to gain root privileges via a long line in the .authlie scrip
- CVE-1999-1177 UNKNOWN — CVE-1999-1177: Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .
- CVE-1999-1178 UNKNOWN — CVE-1999-1178: Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for
- CVE-1999-1179 UNKNOWN — CVE-1999-1179: Vulnerability in man.sh CGI script, included in May 1998 issue of SysAdmin Magazine, allows remote attackers to execute
- CVE-1999-1180 UNKNOWN — CVE-1999-1180: O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters
- CVE-1999-1181 UNKNOWN — CVE-1999-1181: Vulnerability in On-Line Customer Registration software for IRIX 6.2 through 6.4 allows local users to gain root privile
- CVE-1999-1182 UNKNOWN — CVE-1999-1182: Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges
- CVE-1999-1183 UNKNOWN — CVE-1999-1183: System Manager sysmgr GUI in SGI IRIX 6.4 and 6.3 allows remote attackers to execute commands by providing a trojan hors
- CVE-1999-1185 UNKNOWN — CVE-1999-1185: Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscre
- CVE-1999-1184 UNKNOWN — CVE-1999-1184: Buffer overflow in Elm 2.4 and earlier allows local users to gain privileges via a long TERM environmental variable.
- CVE-1999-1186 UNKNOWN — CVE-1999-1186: rxvt, when compiled with the PRINT_PIPE option in various Linux operating systems including Linux Slackware 3.0 and RedH
- CVE-1999-1187 UNKNOWN — CVE-1999-1187: Pine before version 3.94 allows local users to gain privileges via a symlink attack on a lockfile that is created when a
- CVE-1999-1188 UNKNOWN — CVE-1999-1188: mysqld in MySQL 3.21 creates log files with world-readable permissions, which allows local users to obtain passwords for
- CVE-1999-1189 UNKNOWN — CVE-1999-1189: Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a
- CVE-1999-1190 UNKNOWN — CVE-1999-1190: Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands v
- CVE-1999-1191 UNKNOWN — CVE-1999-1191: Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line
- CVE-1999-1192 UNKNOWN — CVE-1999-1192: Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command lin
- CVE-1999-1193 UNKNOWN — CVE-1999-1193: The "me" user in NeXT NeXTstep 2.1 and earlier has wheel group privileges, which could allow the me user to use the su c
- CVE-1999-1194 UNKNOWN — CVE-1999-1194: chroot in Digital Ultrix 4.1 and 4.0 is insecurely installed, which allows local users to gain privileges.
- CVE-1999-1195 UNKNOWN — CVE-1999-1195: NAI VirusScan NT 4.0.2 does not properly modify the scan.dat virus definition file during an update via FTP, but it repo
- CVE-1999-1197 UNKNOWN — CVE-1999-1197: TIOCCONS in SunOS 4.1.1 does not properly check the permissions of a user who tries to redirect console output and input
- CVE-1999-1196 UNKNOWN — CVE-1999-1196: Hummingbird Exceed X version 5 allows remote attackers to cause a denial of service via malformed data to port 6000.
- CVE-1999-1198 UNKNOWN — CVE-1999-1198: BuildDisk program on NeXT systems before 2.0 does not prompt users for the root password, which allows local users to ga
- CVE-1999-1199 UNKNOWN — CVE-1999-1199: Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a lar
- CVE-1999-1200 UNKNOWN — CVE-1999-1200: Vintra SMTP MailServer allows remote attackers to cause a denial of service via a malformed "EXPN *@" command.
- CVE-1999-1201 UNKNOWN — CVE-1999-1201: Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remo
- CVE-1999-1203 UNKNOWN — CVE-1999-1203: Multilink PPP for ISDN dialup users in Ascend before 4.6 allows remote attackers to cause a denial of service via a spoo
- CVE-1999-1202 UNKNOWN — CVE-1999-1202: StarTech (1) POP3 proxy server and (2) telnet server allows remote attackers to cause a denial of service via a long USE
- CVE-1999-1204 UNKNOWN — CVE-1999-1204: Check Point Firewall-1 does not properly handle certain restricted keywords (e.g., Mail, auth, time) in user-defined obj
- CVE-1999-1205 UNKNOWN — CVE-1999-1205: nettune in HP-UX 10.01 and 10.00 is installed setuid root, which allows local users to cause a denial of service by modi
- CVE-1999-1206 UNKNOWN — CVE-1999-1206: SystemSoft SystemWizard package in HP Pavilion PC with Windows 98, and possibly other platforms and operating systems, i
- CVE-1999-1207 UNKNOWN — CVE-1999-1207: Buffer overflow in web-admin tool in NetXRay 2.6 allows remote attackers to cause a denial of service, and possibly exec
- CVE-1999-1208 UNKNOWN — CVE-1999-1208: Buffer overflow in ping in AIX 4.2 and earlier allows local users to gain root privileges via a long command line argume
- CVE-1999-1209 UNKNOWN — CVE-1999-1209: Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root priv
- CVE-1999-1210 UNKNOWN — CVE-1999-1210: xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a
- CVE-1999-1212 UNKNOWN — CVE-1999-1212: Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.
- CVE-1999-1211 UNKNOWN — CVE-1999-1211: Vulnerability in in.telnetd in SunOS 4.1.1 and earlier allows local users to gain root privileges.
- CVE-1999-1213 UNKNOWN — CVE-1999-1213: Vulnerability in telnet service in HP-UX 10.30 allows attackers to cause a denial of service.
- CVE-1999-1214 UNKNOWN — CVE-1999-1214: The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notifi
- CVE-1999-1215 UNKNOWN — CVE-1999-1215: LOGIN.EXE program in Novell Netware 4.0 and 4.01 temporarily writes user name and password information to disk, which co
- CVE-1999-1216 UNKNOWN — CVE-1999-1216: Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packe
- CVE-1999-1217 UNKNOWN — CVE-1999-1217: The PATH in Windows NT includes the current working directory (.), which could allow local users to gain privileges by p
- CVE-1999-1218 UNKNOWN — CVE-1999-1218: Vulnerability in finger in Commodore Amiga UNIX 2.1p2a and earlier allows local users to read arbitrary files.
- CVE-1999-1219 UNKNOWN — CVE-1999-1219: Vulnerability in sgihelp in the SGI help system and print manager in IRIX 5.2 and earlier allows local users to gain roo
- CVE-1999-1220 UNKNOWN — CVE-1999-1220: Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise dir
- CVE-1999-1221 UNKNOWN — CVE-1999-1221: dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log
- CVE-1999-1222 UNKNOWN — CVE-1999-1222: Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.
- CVE-1999-1223 UNKNOWN — CVE-1999-1223: IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a la
- CVE-1999-1225 UNKNOWN — CVE-1999-1225: rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of
- CVE-1999-1224 UNKNOWN — CVE-1999-1224: IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local user
- CVE-1999-1227 UNKNOWN — CVE-1999-1227: Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file.
- CVE-1999-1226 UNKNOWN — CVE-1999-1226: Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitra
- CVE-1999-1228 UNKNOWN — CVE-1999-1228: Various modems that do not implement a guard time, or are configured with a guard time of 0, can allow remote attackers
- CVE-1999-1229 UNKNOWN — CVE-1999-1229: Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allow
- CVE-1999-1230 UNKNOWN — CVE-1999-1230: Quake 2 server allows remote attackers to cause a denial of service via a spoofed UDP packet with a source address of 12
- CVE-1999-1231 UNKNOWN — CVE-1999-1231: ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times
- CVE-1999-1232 UNKNOWN — CVE-1999-1232: Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands v
- CVE-1999-1233 UNKNOWN — CVE-1999-1233: IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does n
- CVE-1999-1234 UNKNOWN — CVE-1999-1234: LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a cal
- CVE-1999-1235 UNKNOWN — CVE-1999-1235: Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local
- CVE-1999-1236 UNKNOWN — CVE-1999-1236: Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local user
- CVE-1999-1237 UNKNOWN — CVE-1999-1237: Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other
- CVE-1999-1238 UNKNOWN — CVE-1999-1238: Vulnerability in CORE-DIAG fileset in HP message catalog in HP-UX 9.05 and earlier allows local users to gain privileges
- CVE-1999-1239 UNKNOWN — CVE-1999-1239: HP-UX 9.x does not properly enable the Xauthority mechanism in certain conditions, which could allow local users to acce
- CVE-1999-1240 UNKNOWN — CVE-1999-1240: Buffer overflow in cddbd CD database server allows remote attackers to execute arbitrary commands via a long log message
- CVE-1999-1241 UNKNOWN — CVE-1999-1241: Internet Explorer, with a security setting below Medium, allows remote attackers to execute arbitrary commands via a mal
- CVE-1999-1242 UNKNOWN — CVE-1999-1242: Vulnerability in subnetconfig in HP-UX 9.01 and 9.0 allows local users to gain privileges.
- CVE-1999-1243 UNKNOWN — CVE-1999-1243: SGI Desktop Permissions Tool in IRIX 6.0.1 and earlier allows local users to modify permissions for arbitrary files and
- CVE-1999-1244 UNKNOWN — CVE-1999-1244: IPFilter 3.2.3 through 3.2.10 allows local users to modify arbitrary files via a symlink attack on the saved output file
- CVE-1999-1245 UNKNOWN — CVE-1999-1245: vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could al
- CVE-1999-1246 UNKNOWN — CVE-1999-1246: Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue n
- CVE-1999-1247 UNKNOWN — CVE-1999-1247: Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.
- CVE-1999-1248 UNKNOWN — CVE-1999-1248: Vulnerability in Support Watch (aka SupportWatch) in HP-UX 8.0 through 9.0 allows local users to gain privileges.
- CVE-1999-1249 UNKNOWN — CVE-1999-1249: movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges.
- CVE-1999-1250 UNKNOWN — CVE-1999-1250: Vulnerability in CGI program in the Lasso application by Blue World, as used on WebSTAR and other servers, allows remote
- CVE-1999-1251 UNKNOWN — CVE-1999-1251: Vulnerability in direct audio user space code on HP-UX 10.20 and 10.10 allows local users to cause a denial of service.
- CVE-1999-1252 UNKNOWN — CVE-1999-1252: Vulnerability in a certain system call in SCO UnixWare 2.0.x and 2.1.0 allows local users to access arbitrary files and
- CVE-1999-1253 UNKNOWN — CVE-1999-1253: Vulnerability in a kernel error handling routine in SCO OpenServer 5.0.2 and earlier, and SCO Internet FastStart 1.0, al
- CVE-1999-1254 UNKNOWN — CVE-1999-1254: Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a
- CVE-1999-1255 UNKNOWN — CVE-1999-1255: Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with a
- CVE-1999-1256 UNKNOWN — CVE-1999-1256: Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the
- CVE-1999-1257 UNKNOWN — CVE-1999-1257: Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by en
- CVE-1999-1258 UNKNOWN — CVE-1999-1258: rpc.pwdauthd in SunOS 4.1.1 and earlier does not properly prevent remote access to the daemon, which allows remote attac
- CVE-1999-1259 UNKNOWN — CVE-1999-1259: Microsoft Office 98, Macintosh Edition, does not properly initialize the disk space used by Office 98 files and effectiv
- CVE-1999-1260 UNKNOWN — CVE-1999-1260: mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database name
- CVE-1999-1261 UNKNOWN — CVE-1999-1261: Buffer overflow in Rainbow Six Multiplayer allows remote attackers to cause a denial of service, and possibly execute ar
- CVE-1999-1262 UNKNOWN — CVE-1999-1262: Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the ap
- CVE-1999-1264 UNKNOWN — CVE-1999-1264: WebRamp M3 router does not disable remote telnet or HTTP access to itself, even when access has been explicitly disabled
- CVE-1999-1265 UNKNOWN — CVE-1999-1265: SMTP server in SLmail 3.1 and earlier allows remote attackers to cause a denial of service via malformed commands whose
- CVE-1999-1266 UNKNOWN — CVE-1999-1266: rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which all
- CVE-1999-1267 UNKNOWN — CVE-1999-1267: KDE file manager (kfm) uses a TCP server for certain file operations, which allows remote attackers to modify arbitrary
- CVE-1999-1268 UNKNOWN — CVE-1999-1268: Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain device
- CVE-1999-1269 UNKNOWN — CVE-1999-1269: Screen savers in KDE beta 3 allows local users to overwrite arbitrary files via a symlink attack on the .kss.pid file.
- CVE-1999-1270 UNKNOWN — CVE-1999-1270: KMail in KDE 1.0 provides a PGP passphrase as a command line argument to other programs, which could allow local users t
- CVE-1999-1271 UNKNOWN — CVE-1999-1271: Macromedia Dreamweaver uses weak encryption to store FTP passwords, which could allow local users to easily decrypt the
- CVE-1999-1272 UNKNOWN — CVE-1999-1272: Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges.
- CVE-1999-1273 UNKNOWN — CVE-1999-1273: Squid Internet Object Cache 1.1.20 allows users to bypass access control lists (ACLs) by encoding the URL with hexadecim
- CVE-1999-1274 UNKNOWN — CVE-1999-1274: iPass RoamServer 3.1 creates temporary files with world-writable permissions.
- CVE-1999-1275 UNKNOWN — CVE-1999-1275: Lotus cc:Mail release 8 stores the postoffice password in plaintext in a hidden file which has insecure permissions, whi
- CVE-1999-1276 UNKNOWN — CVE-1999-1276: fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root acc
- CVE-1999-1277 UNKNOWN — CVE-1999-1277: BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key,
- CVE-1999-1278 UNKNOWN — CVE-1999-1278: nlog CGI scripts do not properly filter shell metacharacters from the IP address argument, which could allow remote atta
- CVE-1999-1279 UNKNOWN — CVE-1999-1279: An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view e
- CVE-1999-1280 UNKNOWN — CVE-1999-1280: Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user name
- CVE-1999-1282 UNKNOWN — CVE-1999-1282: RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows
- CVE-1999-1283 UNKNOWN — CVE-1999-1283: Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra /
- CVE-1999-1284 UNKNOWN — CVE-1999-1284: NukeNabber allows remote attackers to cause a denial of service by connecting to the NukeNabber port (1080) without send
- CVE-1999-1285 UNKNOWN — CVE-1999-1285: Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffe
- CVE-1999-1286 UNKNOWN — CVE-1999-1286: addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a sy
- CVE-1999-1287 UNKNOWN — CVE-1999-1287: Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface.
- CVE-1999-1288 UNKNOWN — CVE-1999-1288: Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions inc
- CVE-1999-1281 UNKNOWN — CVE-1999-1281: Development version of Breeze Network Server allows remote attackers to cause the system to reboot by accessing the conf
- CVE-1999-1289 UNKNOWN — CVE-1999-1289: ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of
- CVE-1999-1291 UNKNOWN — CVE-1999-1291: TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset con
- CVE-1999-1292 UNKNOWN — CVE-1999-1292: Buffer overflow in web administration feature of Kolban Webcam32 4.8.3 and earlier allows remote attackers to execute ar
- CVE-1999-1293 UNKNOWN — CVE-1999-1293: mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, w
- CVE-1999-1294 UNKNOWN — CVE-1999-1294: Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such a
- CVE-1999-1295 UNKNOWN — CVE-1999-1295: Transarc DCE Distributed File System (DFS) 1.1 for Solaris 2.4 and 2.5 does not properly initialize the grouplist for us
- CVE-1999-1290 UNKNOWN — CVE-1999-1290: Buffer overflow in nftp FTP client version 1.40 allows remote malicious FTP servers to cause a denial of service, and po
- CVE-1999-1296 UNKNOWN — CVE-1999-1296: Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges
- CVE-1999-1297 UNKNOWN — CVE-1999-1297: cmdtool in OpenWindows 3.0 and XView 3.0 in SunOS 4.1.4 and earlier allows attackers with physical access to the system
- CVE-1999-1298 UNKNOWN — CVE-1999-1298: Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and wit
- CVE-1999-1299 UNKNOWN — CVE-1999-1299: rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite a
- CVE-1999-1300 UNKNOWN — CVE-1999-1300: Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounti
- CVE-1999-1301 UNKNOWN — CVE-1999-1301: A design flaw in the Z-Modem protocol allows the remote sender of a file to execute arbitrary programs on the client, as
- CVE-1999-1302 UNKNOWN — CVE-1999-1302: Unspecified vulnerability in pt_chmod in SCO UNIX 4.2 and earlier allows local users to gain root access.
- CVE-1999-1303 UNKNOWN — CVE-1999-1303: Vulnerability in prwarn in SCO UNIX 4.2 and earlier allows local users to gain root access.
- CVE-1999-1305 UNKNOWN — CVE-1999-1305: Vulnerability in "at" program in SCO UNIX 4.2 and earlier allows local users to gain root access.
- CVE-1999-1304 UNKNOWN — CVE-1999-1304: Vulnerability in login in SCO UNIX 4.2 and earlier allows local users to gain root access.
- CVE-1999-1306 UNKNOWN — CVE-1999-1306: Cisco IOS 9.1 and earlier does not properly handle extended IP access lists when the IP route cache is enabled and the "
- CVE-1999-1308 UNKNOWN — CVE-1999-1308: Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could a
- CVE-1999-1309 UNKNOWN — CVE-1999-1309: Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.
- CVE-1999-1310 UNKNOWN — CVE-1999-1310: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1022. Reason: This candidate is a duplicate of
- CVE-1999-1311 UNKNOWN — CVE-1999-1311: Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain pri
- CVE-1999-1312 UNKNOWN — CVE-1999-1312: Vulnerability in DEC OpenVMS VAX 5.5-2 through 5.0, and OpenVMS AXP 1.0, allows local users to gain system privileges.
- CVE-1999-1313 UNKNOWN — CVE-1999-1313: Manual page reader (man) in FreeBSD 2.2 and earlier allows local users to gain privileges via a sequence of commands.
- CVE-1999-1314 UNKNOWN — CVE-1999-1314: Vulnerability in union file system in FreeBSD 2.2 and earlier, and possibly other operating systems, allows local users
- CVE-1999-1315 UNKNOWN — CVE-1999-1315: Vulnerabilities in DECnet/OSI for OpenVMS before 5.8 on DEC Alpha AXP and VAX/VMS systems allow local users to gain priv
- CVE-1999-1307 UNKNOWN — CVE-1999-1307: Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges.
- CVE-1999-1316 UNKNOWN — CVE-1999-1316: Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easi
- CVE-1999-1317 UNKNOWN — CVE-1999-1317: Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? obj
- CVE-1999-1318 UNKNOWN — CVE-1999-1318: /usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows
- CVE-1999-1319 UNKNOWN — CVE-1999-1319: Vulnerability in object server program in SGI IRIX 5.2 through 6.1 allows remote attackers to gain root privileges in ce
- CVE-1999-1320 UNKNOWN — CVE-1999-1320: Vulnerability in Novell NetWare 3.x and earlier allows local users to gain privileges via packet spoofing.
- CVE-1999-1321 UNKNOWN — CVE-1999-1321: Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service o
- CVE-1999-1322 UNKNOWN — CVE-1999-1322: The installation of 1ArcServe Backup and Inoculan AV client modules for Exchange create a log file, exchverify.log, whic
- CVE-1999-1323 UNKNOWN — CVE-1999-1323: Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE)
- CVE-1999-1324 UNKNOWN — CVE-1999-1324: VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accou
- CVE-1999-1325 UNKNOWN — CVE-1999-1325: SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows loc
- CVE-1999-1326 UNKNOWN — CVE-1999-1326: wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a
- CVE-1999-1327 UNKNOWN — CVE-1999-1327: Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG
- CVE-1999-1328 UNKNOWN — CVE-1999-1328: linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access
- CVE-1999-1330 UNKNOWN — CVE-1999-1330: The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer
- CVE-1999-1331 UNKNOWN — CVE-1999-1331: netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet interface to be controlled by users on reboot when an option is s
- CVE-1999-1332 UNKNOWN — CVE-1999-1332: gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a sy
- CVE-1999-1333 UNKNOWN — CVE-1999-1333: automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute
- CVE-1999-1334 UNKNOWN — CVE-1999-1334: Multiple buffer overflows in filter command in Elm 2.4 allows attackers to execute arbitrary commands via (1) long From:
- CVE-1999-1335 UNKNOWN — CVE-1999-1335: snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read
- CVE-1999-1336 UNKNOWN — CVE-1999-1336: 3Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 allows remote attackers to cause a denial of service (reboot
- CVE-1999-1329 UNKNOWN — CVE-1999-1329: Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.
- CVE-1999-1338 UNKNOWN — CVE-1999-1338: Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.
- CVE-1999-1337 UNKNOWN — CVE-1999-1337: FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the
- CVE-1999-1339 UNKNOWN — CVE-1999-1339: Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.
- CVE-1999-1340 UNKNOWN — CVE-1999-1340: Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument.
- CVE-1999-1341 UNKNOWN — CVE-1999-1341: Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packet
- CVE-1999-1342 UNKNOWN — CVE-1999-1342: ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's
- CVE-1999-1344 UNKNOWN — CVE-1999-1344: Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file.
- CVE-1999-1343 UNKNOWN — CVE-1999-1343: HTTP server for Xerox DocuColor 4 LP allows remote attackers to cause a denial of service (hang) via a long URL that con
- CVE-1999-1345 UNKNOWN — CVE-1999-1345: Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows l
- CVE-1999-1346 UNKNOWN — CVE-1999-1346: PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restri
- CVE-1999-1348 UNKNOWN — CVE-1999-1348: Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which cou
- CVE-1999-1347 UNKNOWN — CVE-1999-1347: Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xse
- CVE-1999-1349 UNKNOWN — CVE-1999-1349: NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via
- CVE-1999-1350 UNKNOWN — CVE-1999-1350: ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local
- CVE-1999-1351 UNKNOWN — CVE-1999-1351: Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabl
- CVE-1999-1352 UNKNOWN — CVE-1999-1352: mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.
- CVE-1999-1353 UNKNOWN — CVE-1999-1353: Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2)
- CVE-1999-1354 UNKNOWN — CVE-1999-1354: E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the
- CVE-1999-1355 UNKNOWN — CVE-1999-1355: BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Ser
- CVE-1999-1356 UNKNOWN — CVE-1999-1356: Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal
- CVE-1999-1357 UNKNOWN — CVE-1999-1357: Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b
- CVE-1999-1358 UNKNOWN — CVE-1999-1358: When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the loc
- CVE-1999-1359 UNKNOWN — CVE-1999-1359: When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enf
- CVE-1999-1360 UNKNOWN — CVE-1999-1360: Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was
- CVE-1999-1361 UNKNOWN — CVE-1999-1361: Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of servic
- CVE-1999-1362 UNKNOWN — CVE-1999-1362: Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32
- CVE-1999-1363 UNKNOWN — CVE-1999-1363: Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large
- CVE-1999-1364 UNKNOWN — CVE-1999-1364: Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functio
- CVE-1999-1365 UNKNOWN — CVE-1999-1365: Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs
- CVE-1999-1366 UNKNOWN — CVE-1999-1366: Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows l
- CVE-1999-1367 UNKNOWN — CVE-1999-1367: Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache c
- CVE-1999-1368 UNKNOWN — CVE-1999-1368: AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder t
- CVE-1999-1369 UNKNOWN — CVE-1999-1369: Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which
- CVE-1999-1370 UNKNOWN — CVE-1999-1370: The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system op
- CVE-1999-1371 UNKNOWN — CVE-1999-1371: Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the te
- CVE-1999-1372 UNKNOWN — CVE-1999-1372: Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry key
- CVE-1999-1375 UNKNOWN — CVE-1999-1375: FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by s
- CVE-1999-1376 UNKNOWN — CVE-1999-1376: Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary
- CVE-1999-1377 UNKNOWN — CVE-1999-1377: Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.
- CVE-1999-1378 UNKNOWN — CVE-1999-1378: dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read
- CVE-1999-1379 UNKNOWN — CVE-1999-1379: DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source addr
- CVE-1999-1380 UNKNOWN — CVE-1999-1380: Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows r
- CVE-1999-1381 UNKNOWN — CVE-1999-1381: Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.
- CVE-1999-1382 UNKNOWN — CVE-1999-1382: NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allo
- CVE-1999-1383 UNKNOWN — CVE-1999-1383: (1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell me
- CVE-1999-1384 UNKNOWN — CVE-1999-1384: Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain ro
- CVE-1999-1385 UNKNOWN — CVE-1999-1385: Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environm
- CVE-1999-1386 UNKNOWN — CVE-1999-1386: Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite
- CVE-1999-1387 UNKNOWN — CVE-1999-1387: Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packet
- CVE-1999-1388 UNKNOWN — CVE-1999-1388: passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argum
- CVE-1999-1389 UNKNOWN — CVE-1999-1389: US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filte
- CVE-1999-1390 UNKNOWN — CVE-1999-1390: suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program
- CVE-1999-1391 UNKNOWN — CVE-1999-1391: Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combina
- CVE-1999-1392 UNKNOWN — CVE-1999-1392: Vulnerability in restore0.9 installation script in NeXT 1.0a and 1.0 allows local users to gain root privileges.
- CVE-1999-1393 UNKNOWN — CVE-1999-1393: Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to by
- CVE-1999-1394 UNKNOWN — CVE-1999-1394: BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append
- CVE-1999-1395 UNKNOWN — CVE-1999-1395: Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.
- CVE-1999-1397 UNKNOWN — CVE-1999-1397: Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths reg
- CVE-1999-1396 UNKNOWN — CVE-1999-1396: Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local u
- CVE-1999-1398 UNKNOWN — CVE-1999-1398: Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly
- CVE-1999-1399 UNKNOWN — CVE-1999-1399: spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME e
- CVE-1999-1401 UNKNOWN — CVE-1999-1401: Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (
- CVE-1999-1400 UNKNOWN — CVE-1999-1400: The Economist screen saver 1999 with the "Password Protected" option enabled allows users with physical access to the ma
- CVE-1999-1402 UNKNOWN — CVE-1999-1402: The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating
- CVE-1999-1403 UNKNOWN — CVE-1999-1403: IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permis
- CVE-1999-1404 UNKNOWN — CVE-1999-1404: IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhausti
- CVE-1999-1405 UNKNOWN — CVE-1999-1405: snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove
- CVE-1999-1406 UNKNOWN — CVE-1999-1406: dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (c
- CVE-1999-1407 UNKNOWN — CVE-1999-1407: ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a s
- CVE-1999-1408 UNKNOWN — CVE-1999-1408: Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a s
- CVE-1999-1409 UNKNOWN — CVE-1999-1409: The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submit
- CVE-1999-1410 UNKNOWN — CVE-1999-1410: addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a sym
- CVE-1999-1411 UNKNOWN — CVE-1999-1411: The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the ad
- CVE-1999-1412 UNKNOWN — CVE-1999-1412: A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denia
- CVE-1999-1413 UNKNOWN — CVE-1999-1413: Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the se
- CVE-1999-1414 UNKNOWN — CVE-1999-1414: IBM Netfinity Remote Control allows local users to gain administrator privileges by starting programs from the process m
- CVE-1999-1415 UNKNOWN — CVE-1999-1415: Vulnerability in /usr/bin/mail in DEC ULTRIX before 4.2 allows local users to gain privileges.
- CVE-1999-1416 UNKNOWN — CVE-1999-1416: AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service (resource exhaustion) vi
- CVE-1999-1417 UNKNOWN — CVE-1999-1417: Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of s
- CVE-1999-1418 UNKNOWN — CVE-1999-1418: ICQ99 ICQ web server build 1701 with "Active Homepage" enabled generates allows remote attackers to determine the existe
- CVE-1999-1419 UNKNOWN — CVE-1999-1419: Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.
- CVE-1999-1420 UNKNOWN — CVE-1999-1420: NBase switches NH2012, NH2012R, NH2015, and NH2048 have a back door password that cannot be disabled, which allows remot
- CVE-1999-1421 UNKNOWN — CVE-1999-1421: NBase switches NH208 and NH215 run a TFTP server which allows remote attackers to send software updates to modify the sw
- CVE-1999-1423 UNKNOWN — CVE-1999-1423: ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicas
- CVE-1999-1422 UNKNOWN — CVE-1999-1422: The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the
- CVE-1999-1424 UNKNOWN — CVE-1999-1424: Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, w
- CVE-1999-1425 UNKNOWN — CVE-1999-1425: Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which coul
- CVE-1999-1426 UNKNOWN — CVE-1999-1426: Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local us
- CVE-1999-1427 UNKNOWN — CVE-1999-1427: Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root
- CVE-1999-1428 UNKNOWN — CVE-1999-1428: Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Da
- CVE-1999-1429 UNKNOWN — CVE-1999-1429: DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to da
- CVE-1999-1430 UNKNOWN — CVE-1999-1430: PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) f
- CVE-1999-1432 UNKNOWN — CVE-1999-1432: Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspe
- CVE-1999-1433 UNKNOWN — CVE-1999-1433: HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on t
- CVE-1999-1434 UNKNOWN — CVE-1999-1434: login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which
- CVE-1999-1435 UNKNOWN — CVE-1999-1435: Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmen
- CVE-1999-1436 UNKNOWN — CVE-1999-1436: Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metac
- CVE-1999-1438 UNKNOWN — CVE-1999-1438: Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command lin
- CVE-1999-1437 UNKNOWN — CVE-1999-1437: ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full
- CVE-1999-1439 UNKNOWN — CVE-1999-1439: gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.
- CVE-1999-1440 UNKNOWN — CVE-1999-1440: Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allo
- CVE-1999-1441 UNKNOWN — CVE-1999-1441: Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users
- CVE-1999-1442 UNKNOWN — CVE-1999-1442: Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a p
- CVE-1999-1443 UNKNOWN — CVE-1999-1443: Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass
- CVE-1999-1444 UNKNOWN — CVE-1999-1444: genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent
- CVE-1999-1445 UNKNOWN — CVE-1999-1445: Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems,
- CVE-1999-1446 UNKNOWN — CVE-1999-1446: Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Inte
- CVE-1999-1447 UNKNOWN — CVE-1999-1447: Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CL
- CVE-1999-1449 UNKNOWN — CVE-1999-1449: SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /de
- CVE-1999-1448 UNKNOWN — CVE-1999-1448: Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mai
- CVE-1999-1450 UNKNOWN — CVE-1999-1450: Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1
- CVE-1999-1451 UNKNOWN — CVE-1999-1451: The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.
- CVE-1999-1452 UNKNOWN — CVE-1999-1452: GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has l
- CVE-1999-1453 UNKNOWN — CVE-1999-1453: Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the
- CVE-1999-1454 UNKNOWN — CVE-1999-1454: Macromedia "The Matrix" screen saver on Windows 95 with the "Password protected" option enabled allows attackers with ph
- CVE-1999-1455 UNKNOWN — CVE-1999-1455: RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts f
- CVE-1999-1456 UNKNOWN — CVE-1999-1456: thttpd HTTP server 2.03 and earlier allows remote attackers to read arbitrary files via a GET request with more than one
- CVE-1999-1457 UNKNOWN — CVE-1999-1457: Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long da
- CVE-1999-1458 UNKNOWN — CVE-1999-1458: Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line arg
- CVE-1999-1459 UNKNOWN — CVE-1999-1459: BMC PATROL Agent before 3.2.07 allows local users to gain root privileges via a symlink attack on a temporary file.
- CVE-1999-1460 UNKNOWN — CVE-1999-1460: BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying t
- CVE-1999-1461 UNKNOWN — CVE-1999-1461: inpview in InPerson on IRIX 5.3 through IRIX 6.5.10 trusts the PATH environmental variable to find and execute the ttses
- CVE-1999-1462 UNKNOWN — CVE-1999-1462: Vulnerability in bb-hist.sh CGI History module in Big Brother 1.09b and 1.09c allows remote attackers to read portions o
- CVE-1999-1463 UNKNOWN — CVE-1999-1463: Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) b
- CVE-1999-1464 UNKNOWN — CVE-1999-1464: Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows remote attackers to by
- CVE-1999-1465 UNKNOWN — CVE-1999-1465: Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows remote attackers to by
- CVE-1999-1466 UNKNOWN — CVE-1999-1466: Vulnerability in Cisco routers versions 8.2 through 9.1 allows remote attackers to bypass access control lists when exte
- CVE-1999-1467 UNKNOWN — CVE-1999-1467: Vulnerability in rcp on SunOS 4.0.x allows remote attackers from trusted hosts to execute arbitrary commands as root, po
- CVE-1999-1468 UNKNOWN — CVE-1999-1468: rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modify
- CVE-1999-1469 UNKNOWN — CVE-1999-1469: Buffer overflow in w3-auth CGI program in miniSQL package allows remote attackers to execute arbitrary commands via an H
- CVE-1999-1470 UNKNOWN — CVE-1999-1470: Eastman Work Management 3.21 stores passwords in cleartext in the COMMON and LOCATOR registry keys, which could allow lo
- CVE-1999-1471 UNKNOWN — CVE-1999-1471: Buffer overflow in passwd in BSD based operating systems 4.3 and earlier allows local users to gain root privileges by s
- CVE-1999-1472 UNKNOWN — CVE-1999-1472: Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IF
- CVE-1999-1473 UNKNOWN — CVE-1999-1473: When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authenticati
- CVE-1999-1474 UNKNOWN — CVE-1999-1474: PowerPoint 95 and 97 allows remote attackers to cause an application to be run automatically without prompting the user,
- CVE-1999-1475 UNKNOWN — CVE-1999-1475: ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to
- CVE-1999-1476 UNKNOWN — CVE-1999-1476: A bug in Intel Pentium processor (MMX and Overdrive) allows local users to cause a denial of service (hang) in Intel-bas
- CVE-1999-1477 UNKNOWN — CVE-1999-1477: Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in program
- CVE-1999-1478 UNKNOWN — CVE-1999-1478: The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpo
- CVE-1999-1479 UNKNOWN — CVE-1999-1479: The textcounter.pl by Matt Wright allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-1999-1480 UNKNOWN — CVE-1999-1480: (1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink attack.
- CVE-1999-1481 UNKNOWN — CVE-1999-1481: Squid 2.2.STABLE5 and below, when using external authentication, allows attackers to bypass access controls via a newlin
- CVE-1999-1482 UNKNOWN — CVE-1999-1482: SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to c
- CVE-1999-1483 UNKNOWN — CVE-1999-1483: Buffer overflow in zgv in svgalib 1.2.10 and earlier allows local users to execute arbitrary code via a long HOME enviro
- CVE-1999-1484 UNKNOWN — CVE-1999-1484: Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary
- CVE-1999-1485 UNKNOWN — CVE-1999-1485: nsd in IRIX 6.5 through 6.5.2 exports a virtual filesystem on a UDP port, which allows remote attackers to view files an
- CVE-1999-1486 UNKNOWN — CVE-1999-1486: sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to over
- CVE-1999-1488 UNKNOWN — CVE-1999-1488: sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
- CVE-1999-1487 UNKNOWN — CVE-1999-1487: Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on t
- CVE-1999-1489 UNKNOWN — CVE-1999-1489: Buffer overflow in TestChip function in XFree86 SuperProbe in Slackware Linux 3.1 allows local users to gain root privil
- CVE-1999-1490 UNKNOWN — CVE-1999-1490: xosview 1.5.1 in Red Hat 5.1 allows local users to gain root access via a long HOME environmental variable.
- CVE-1999-1491 UNKNOWN — CVE-1999-1491: abuse.console in Red Hat 2.1 uses relative pathnames to find and execute the undrv program, which allows local users to
- CVE-1999-1494 UNKNOWN — CVE-1999-1494: colorview in Silicon Graphics IRIX 5.1, 5.2, and 6.0 allows local attackers to read arbitrary files via the -text argume
- CVE-1999-1492 UNKNOWN — CVE-1999-1492: Vulnerability in (1) diskperf and (2) diskalign in IRIX 6.4 allows local attacker to create arbitrary root owned files,
- CVE-1999-1493 UNKNOWN — CVE-1999-1493: Vulnerability in crp in Hewlett Packard Apollo Domain OS SR10 through SR10.3 allows remote attackers to gain root privil
- CVE-1999-1495 UNKNOWN — CVE-1999-1495: xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file.
- CVE-1999-1496 UNKNOWN — CVE-1999-1496: Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of arbitrary files by attempt
- CVE-1999-1497 UNKNOWN — CVE-1999-1497: Ipswitch IMail 5.0 and 6.0 uses weak encryption to store passwords in registry keys, which allows local attackers to rea
- CVE-1999-1498 UNKNOWN — CVE-1999-1498: Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a symlink attack on the reply
- CVE-1999-1499 UNKNOWN — CVE-1999-1499: named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1) named_dump.db when root ki
- CVE-1999-1500 UNKNOWN — CVE-1999-1500: Internet Anywhere POP3 Mail Server 2.3.1 allows remote attackers to cause a denial of service (crash) via (1) LIST, (2)
- CVE-1999-1501 UNKNOWN — CVE-1999-1501: (1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing s
- CVE-1999-1502 UNKNOWN — CVE-1999-1502: Buffer overflows in Quake 1.9 client allows remote malicious servers to execute arbitrary commands via long (1) precache
- CVE-1999-1503 UNKNOWN — CVE-1999-1503: Network Flight Recorder (NFR) 1.5 and 1.6 allows remote attackers to cause a denial of service in nfrd (crash) via a TCP
- CVE-1999-1504 UNKNOWN — CVE-1999-1504: Stalker Internet Mail Server 1.6 allows a remote attacker to cause a denial of service (crash) via a long HELO command.
- CVE-1999-1505 UNKNOWN — CVE-1999-1505: Buffer overflow in QuakeWorld 2.10 allows remote attackers to cause a denial of service (crash) and possibly execute arb
- CVE-1999-1506 UNKNOWN — CVE-1999-1506: Vulnerability in SMI Sendmail 4.0 and earlier, on SunOS up to 4.0.3, allows remote attackers to access user bin.
- CVE-1999-1507 UNKNOWN — CVE-1999-1507: Sun SunOS 4.1 through 4.1.3 allows local attackers to gain root access via insecure permissions on files and directories
- CVE-1999-1508 UNKNOWN — CVE-1999-1508: Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by di
- CVE-1999-1509 UNKNOWN — CVE-1999-1509: Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file s
- CVE-1999-1510 UNKNOWN — CVE-1999-1510: Buffer overflows in Bisonware FTP server prior to 4.1 allow remote attackers to cause a denial of service, and possibly
- CVE-1999-1512 UNKNOWN — CVE-1999-1512: The AMaViS virus scanner 0.2.0-pre4 and earlier allows remote attackers to execute arbitrary commands as root via an inf
- CVE-1999-1511 UNKNOWN — CVE-1999-1511: Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary co
- CVE-1999-1513 UNKNOWN — CVE-1999-1513: Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifi
- CVE-1999-1515 UNKNOWN — CVE-1999-1515: A non-default configuration in TenFour TFS Gateway 4.0 allows an attacker to cause a denial of service via messages with
- CVE-1999-1516 UNKNOWN — CVE-1999-1516: A buffer overflow in TenFour TFS Gateway SMTP mail server 3.2 allows an attacker to crash the mail server and possibly e
- CVE-1999-1517 UNKNOWN — CVE-1999-1517: runtar in the Amanda backup system used in various UNIX operating systems executes tar with root privileges, which allow
- CVE-1999-1519 UNKNOWN — CVE-1999-1519: Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user
- CVE-1999-1518 UNKNOWN — CVE-1999-1518: Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service a
- CVE-1999-1520 UNKNOWN — CVE-1999-1520: A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to
- CVE-1999-1521 UNKNOWN — CVE-1999-1521: Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command
- CVE-1999-1522 UNKNOWN — CVE-1999-1522: Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 and earlier, possibly related to recursive parsing and refere
- CVE-1999-1523 UNKNOWN — CVE-1999-1523: Buffer overflow in Sambar Web Server 4.2.1 allows remote attackers to cause a denial of service, and possibly execute ar
- CVE-1999-1524 UNKNOWN — CVE-1999-1524: FlowPoint DSL router firmware versions prior to 3.0.8 allows a remote attacker to exploit a password recovery feature fr
- CVE-1999-1525 UNKNOWN — CVE-1999-1525: Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web
- CVE-1999-1526 UNKNOWN — CVE-1999-1526: Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia.
- CVE-1999-1527 UNKNOWN — CVE-1999-1527: Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does n
- CVE-1999-1528 UNKNOWN — CVE-1999-1528: ProSoft Netware Client 5.12 on Macintosh MacOS 9 does not automatically log a user out of the NDS tree when the user log
- CVE-1999-1529 UNKNOWN — CVE-1999-1529: A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may
- CVE-1999-1530 UNKNOWN — CVE-1999-1530: cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allo
- CVE-1999-1531 UNKNOWN — CVE-1999-1531: Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a vie
- CVE-1999-1533 UNKNOWN — CVE-1999-1533: Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password ar
- CVE-1999-1532 UNKNOWN — CVE-1999-1532: Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion)
- CVE-1999-1534 UNKNOWN — CVE-1999-1534: Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root ac
- CVE-1999-1535 UNKNOWN — CVE-1999-1535: Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial
- CVE-1999-1536 UNKNOWN — CVE-1999-1536: .sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by append
- CVE-1999-1537 UNKNOWN — CVE-1999-1537: IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attac
- CVE-1999-1538 UNKNOWN — CVE-1999-1538: When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access
- CVE-1999-1539 UNKNOWN — CVE-1999-1539: Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attack
- CVE-1999-1540 UNKNOWN — CVE-1999-1540: shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decryp
- CVE-1999-1541 UNKNOWN — CVE-1999-1541: shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are execut
- CVE-1999-1543 UNKNOWN — CVE-1999-1543: MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
- CVE-1999-1542 UNKNOWN — CVE-1999-1542: RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "M
- CVE-1999-1544 UNKNOWN — CVE-1999-1544: Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial
- CVE-1999-1545 UNKNOWN — CVE-1999-1545: Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local u
- CVE-1999-1546 UNKNOWN — CVE-1999-1546: netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable an
- CVE-1999-1547 UNKNOWN — CVE-1999-1547: Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with i
- CVE-1999-1548 UNKNOWN — CVE-1999-1548: Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of se
- CVE-1999-1549 UNKNOWN — CVE-1999-1549: Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "s
- CVE-1999-1550 UNKNOWN — CVE-1999-1550: bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target fil
- CVE-1999-1551 UNKNOWN — CVE-1999-1551: Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execu
- CVE-1999-1552 UNKNOWN — CVE-1999-1552: dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allow
- CVE-1999-1554 UNKNOWN — CVE-1999-1554: /usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail
- CVE-1999-1553 UNKNOWN — CVE-1999-1553: Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long
- CVE-1999-1555 UNKNOWN — CVE-1999-1555: Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FUL
- CVE-1999-1556 UNKNOWN — CVE-1999-1556: Microsoft SQL Server 6.5 uses weak encryption for the password for the SQLExecutiveCmdExec account and stores it in an a
- CVE-1999-1558 UNKNOWN — CVE-1999-1558: Vulnerability in loginout in Digital OpenVMS 7.1 and earlier allows unauthorized access when external authentication is
- CVE-1999-1559 UNKNOWN — CVE-1999-1559: Xylan OmniSwitch before 3.2.6 allows remote attackers to bypass the login prompt via a CTRL-D (control d) character, whi
- CVE-1999-1560 UNKNOWN — CVE-1999-1560: Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the T
- CVE-1999-1561 UNKNOWN — CVE-1999-1561: Nullsoft SHOUTcast server stores the administrative password in plaintext in a configuration file (sc_serv.conf), which
- CVE-1999-1564 UNKNOWN — CVE-1999-1564: FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number acc
- CVE-1999-1565 UNKNOWN — CVE-1999-1565: Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
- CVE-1999-1562 UNKNOWN — CVE-1999-1562: gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in
- CVE-1999-1566 UNKNOWN — CVE-1999-1566: Buffer overflow in iParty server 1.2 and earlier allows remote attackers to cause a denial of service (crash) by connect
- CVE-1999-1567 UNKNOWN — CVE-1999-1567: Seapine Software TestTrack server allows a remote attacker to cause a denial of service (high CPU) via (1) TestTrackWeb.
- CVE-1999-1568 UNKNOWN — CVE-1999-1568: Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a l
- CVE-1999-1571 UNKNOWN — CVE-1999-1571: Buffer overflow in sar for SCO OpenServer 5.0.0 through 5.0.5 may allow local users to gain root privileges via a long -
- CVE-1999-1572 UNKNOWN — CVE-1999-1572: cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files us
- CVE-1999-1573 UNKNOWN — CVE-1999-1573: Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (
- CVE-1999-1574 UNKNOWN — CVE-1999-1574: Buffer overflow in the lex routines of nslookup for AIX 4.3 may allow attackers to cause a core dump and possibly execut
- CVE-1999-1575 UNKNOWN — CVE-1999-1575: The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumb
- CVE-1999-1576 UNKNOWN — CVE-1999-1576: Buffer overflow in Adobe Acrobat ActiveX control (pdf.ocx, PDF.PdfCtrl.1) 1.3.188 for Acrobat Reader 4.0 allows remote a
- CVE-1999-1578 UNKNOWN — CVE-1999-1578: Buffer overflow in Registration Wizard ActiveX control (regwizc.dll, InvokeRegWizard) 3.0.0.0 for Internet Explorer 4.01
- CVE-1999-1577 UNKNOWN — CVE-1999-1577: Buffer overflow in HHOpen ActiveX control (hhopen.ocx) 1.0.0.1 for Internet Explorer 4.01 and 5 allows remote attackers
- CVE-1999-1580 UNKNOWN — CVE-1999-1580: SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root
- CVE-1999-1581 UNKNOWN — CVE-1999-1581: Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allow
- CVE-1999-1582 UNKNOWN — CVE-1999-1582: By design, the "established" command on the Cisco PIX firewall allows connections from one host to arbitrary ports of a
- CVE-1999-1583 UNKNOWN — CVE-1999-1583: Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line ar
- CVE-1999-1584 UNKNOWN — CVE-1999-1584: Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS
- CVE-1999-1585 UNKNOWN — CVE-1999-1585: The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system co
- CVE-1999-1586 UNKNOWN — CVE-1999-1586: loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gai
- CVE-1999-1587 UNKNOWN — CVE-1999-1587: /usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environmen
- CVE-1999-1588 UNKNOWN — CVE-1999-1588: Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code
- CVE-1999-1589 UNKNOWN — CVE-1999-1589: Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vector
- CVE-1999-1590 UNKNOWN — CVE-1999-1590: Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitra
- CVE-1999-1591 UNKNOWN — CVE-1999-1591: Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for SP4, does not requir
- CVE-1999-1592 UNKNOWN — CVE-1999-1592: Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attac
- CVE-2000-0002 UNKNOWN — CVE-2000-0002: Buffer overflow in ZBServer Pro 1.50 allows remote attackers to execute commands via a long GET request.
- CVE-2000-0001 UNKNOWN — CVE-2000-0001: RealMedia server allows remote attackers to cause a denial of service via a long ramgen request.
- CVE-2000-0004 UNKNOWN — CVE-2000-0004: ZBServer Pro allows remote attackers to read source code for executable files by inserting a . (dot) into the URL.
- CVE-2000-0006 UNKNOWN — CVE-2000-0006: strace allows local users to read arbitrary files via memory mapped file names.
- CVE-2000-0003 UNKNOWN — CVE-2000-0003: Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.
- CVE-2000-0005 UNKNOWN — CVE-2000-0005: HP-UX aserver program allows local users to gain privileges via a symlink attack.
- CVE-2000-0007 UNKNOWN — CVE-2000-0007: Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial
- CVE-2000-0008 UNKNOWN — CVE-2000-0008: FTPPro allows local users to read sensitive information, which is stored in plain text.
- CVE-2000-0009 UNKNOWN — CVE-2000-0009: The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which a
- CVE-2000-0010 UNKNOWN — CVE-2000-0010: WebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter.
- CVE-2000-0011 UNKNOWN — CVE-2000-0011: Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET reque
- CVE-2000-0012 UNKNOWN — CVE-2000-0012: Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands.
- CVE-2000-0014 UNKNOWN — CVE-2000-0014: Denial of service in Savant web server via a null character in the requested URL.
- CVE-2000-0015 UNKNOWN — CVE-2000-0015: CascadeView TFTP server allows local users to gain privileges via a symlink attack.
- CVE-2000-0013 UNKNOWN — CVE-2000-0013: IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which i
- CVE-2000-0016 UNKNOWN — CVE-2000-0016: Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute co
- CVE-2000-0017 UNKNOWN — CVE-2000-0017: Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
- CVE-2000-0018 UNKNOWN — CVE-2000-0018: wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file.
- CVE-2000-0019 UNKNOWN — CVE-2000-0019: IMail POP3 daemon uses weak encryption, which allows local users to read files.
- CVE-2000-0020 UNKNOWN — CVE-2000-0020: DNS PRO allows remote attackers to conduct a denial of service via a large number of connections.
- CVE-2000-0021 UNKNOWN — CVE-2000-0021: Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existen
- CVE-2000-0023 UNKNOWN — CVE-2000-0023: Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL.
- CVE-2000-0022 UNKNOWN — CVE-2000-0022: Lotus Domino HTTP server does not properly disable anonymous access for the cgi-bin directory.
- CVE-2000-0024 UNKNOWN — CVE-2000-0024: IIS does not properly canonicalize URLs, potentially allowing remote attackers to bypass access restrictions in third-pa
- CVE-2000-0026 UNKNOWN — CVE-2000-0026: Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password a
- CVE-2000-0025 UNKNOWN — CVE-2000-0025: IIS 4.0 and Site Server 3.0 allow remote attackers to read source code for ASP files if the file is in a virtual directo
- CVE-2000-0027 UNKNOWN — CVE-2000-0027: IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack.
- CVE-2000-0028 UNKNOWN — CVE-2000-0028: Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the
- CVE-2000-0029 UNKNOWN — CVE-2000-0029: UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack.
- CVE-2000-0030 UNKNOWN — CVE-2000-0030: Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
- CVE-2000-0032 UNKNOWN — CVE-2000-0032: Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.
- CVE-2000-0034 UNKNOWN — CVE-2000-0034: Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not e
- CVE-2000-0035 UNKNOWN — CVE-2000-0035: resend command in Majordomo allows local users to gain privileges via shell metacharacters.
- CVE-2000-0033 UNKNOWN — CVE-2000-0033: InterScan VirusWall SMTP scanner does not properly scan messages with malformed attachments.
- CVE-2000-0036 UNKNOWN — CVE-2000-0036: Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attach
- CVE-2000-0037 UNKNOWN — CVE-2000-0037: Majordomo wrapper allows local users to gain privileges by specifying an alternate configuration file.
- CVE-2000-0038 UNKNOWN — CVE-2000-0038: glFtpD includes a default glftpd user account with a default password and a UID of 0.
- CVE-2000-0039 UNKNOWN — CVE-2000-0039: AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cg
- CVE-2000-0040 UNKNOWN — CVE-2000-0040: glFtpD allows local users to gain privileges via metacharacters in the SITE ZIPCHK command.
- CVE-2000-0041 UNKNOWN — CVE-2000-0041: Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifie
- CVE-2000-0042 UNKNOWN — CVE-2000-0042: Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long H
- CVE-2000-0043 UNKNOWN — CVE-2000-0043: Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.
- CVE-2000-0044 UNKNOWN — CVE-2000-0044: Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands.
- CVE-2000-0046 UNKNOWN — CVE-2000-0046: Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ
- CVE-2000-0045 UNKNOWN — CVE-2000-0045: MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege.
- CVE-2000-0047 UNKNOWN — CVE-2000-0047: Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL with
- CVE-2000-0048 UNKNOWN — CVE-2000-0048: get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp p
- CVE-2000-0049 UNKNOWN — CVE-2000-0049: Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.
- CVE-2000-0050 UNKNOWN — CVE-2000-0050: The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.
- CVE-2000-0051 UNKNOWN — CVE-2000-0051: The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting
- CVE-2000-0052 UNKNOWN — CVE-2000-0052: Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) att
- CVE-2000-0053 UNKNOWN — CVE-2000-0053: Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malfo
- CVE-2000-0054 UNKNOWN — CVE-2000-0054: search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attac
- CVE-2000-0056 UNKNOWN — CVE-2000-0056: IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi.
- CVE-2000-0055 UNKNOWN — CVE-2000-0055: Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option.
- CVE-2000-0057 UNKNOWN — CVE-2000-0057: Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain s
- CVE-2000-0058 UNKNOWN — CVE-2000-0058: Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve emai
- CVE-2000-0059 UNKNOWN — CVE-2000-0059: PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, whic
- CVE-2000-0061 UNKNOWN — CVE-2000-0061: Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the
- CVE-2000-0060 UNKNOWN — CVE-2000-0060: Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name
- CVE-2000-0062 UNKNOWN — CVE-2000-0062: The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized ac
- CVE-2000-0063 UNKNOWN — CVE-2000-0063: cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the fil
- CVE-2000-0065 UNKNOWN — CVE-2000-0065: Buffer overflow in InetServ 3.0 allows remote attackers to execute commands via a long GET request.
- CVE-2000-0066 UNKNOWN — CVE-2000-0066: WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
- CVE-2000-0064 UNKNOWN — CVE-2000-0064: cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed
- CVE-2000-0068 UNKNOWN — CVE-2000-0068: daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modi
- CVE-2000-0067 UNKNOWN — CVE-2000-0067: CyberCash Merchant Connection Kit (MCK) allows local users to modify files via a symlink attack.
- CVE-2000-0069 UNKNOWN — CVE-2000-0069: The recover program in Solstice Backup allows local users to restore sensitive files.
- CVE-2000-0070 UNKNOWN — CVE-2000-0070: NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC
- CVE-2000-0073 UNKNOWN — CVE-2000-0073: Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed
- CVE-2000-0074 UNKNOWN — CVE-2000-0074: PowerScripts PlusMail CGI program allows remote attackers to execute commands via a password file with improper permissi
- CVE-2000-0071 UNKNOWN — CVE-2000-0071: IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with
- CVE-2000-0075 UNKNOWN — CVE-2000-0075: Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a den
- CVE-2000-0076 UNKNOWN — CVE-2000-0076: nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.
- CVE-2000-0078 UNKNOWN — CVE-2000-0078: The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH
- CVE-2000-0072 UNKNOWN — CVE-2000-0072: Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative p
- CVE-2000-0077 UNKNOWN — CVE-2000-0077: The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate P
- CVE-2000-0079 UNKNOWN — CVE-2000-0079: The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request fo
- CVE-2000-0080 UNKNOWN — CVE-2000-0080: AIX techlibss allows local users to overwrite files via a symlink attack.
- CVE-2000-0081 UNKNOWN — CVE-2000-0081: Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the co
- CVE-2000-0083 UNKNOWN — CVE-2000-0083: HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a deni
- CVE-2000-0084 UNKNOWN — CVE-2000-0084: CuteFTP uses weak encryption to store password information in its tree.dat file.
- CVE-2000-0085 UNKNOWN — CVE-2000-0085: Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code v
- CVE-2000-0082 UNKNOWN — CVE-2000-0082: WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.
- CVE-2000-0087 UNKNOWN — CVE-2000-0087: Netscape Mail Notification (nsnotify) utility in Netscape Communicator uses IMAP without SSL, even if the user has set a
- CVE-2000-0086 UNKNOWN — CVE-2000-0086: Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffin
- CVE-2000-0088 UNKNOWN — CVE-2000-0088: Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to exec
- CVE-2000-0089 UNKNOWN — CVE-2000-0089: The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporar
- CVE-2000-0091 UNKNOWN — CVE-2000-0091: Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long
- CVE-2000-0090 UNKNOWN — CVE-2000-0090: VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.
- CVE-2000-0092 UNKNOWN — CVE-2000-0092: The BSD make program allows local users to modify files via a symlink attack when the -j option is being used.
- CVE-2000-0093 UNKNOWN — CVE-2000-0093: An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
- CVE-2000-0094 UNKNOWN — CVE-2000-0094: procfs in BSD systems allows local users to gain root privileges by modifying the /proc/pid/mem interface via a modified
- CVE-2000-0095 UNKNOWN — CVE-2000-0095: The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of tr
- CVE-2000-0096 UNKNOWN — CVE-2000-0096: Buffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command.
- CVE-2000-0097 UNKNOWN — CVE-2000-0097: The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed H
- CVE-2000-0098 UNKNOWN — CVE-2000-0098: Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Intern
- CVE-2000-0099 UNKNOWN — CVE-2000-0099: Buffer overflow in UnixWare ppptalk command allows local users to gain privileges via a long prompt argument.
- CVE-2000-0100 UNKNOWN — CVE-2000-0100: The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by mo
- CVE-2000-0101 UNKNOWN — CVE-2000-0101: The Make-a-Store OrderPage shopping cart application allows remote users to modify sensitive purchase information via hi
- CVE-2000-0103 UNKNOWN — CVE-2000-0103: The SmartCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fie
- CVE-2000-0102 UNKNOWN — CVE-2000-0102: The SalesCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fie
- CVE-2000-0104 UNKNOWN — CVE-2000-0104: The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fiel
- CVE-2000-0106 UNKNOWN — CVE-2000-0106: The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fiel
- CVE-2000-0105 UNKNOWN — CVE-2000-0105: Outlook Express 5.01 and Internet Explorer 5.01 allow remote attackers to view a user's email messages via a script that
- CVE-2000-0107 UNKNOWN — CVE-2000-0107: Linux apcd program allows local attackers to modify arbitrary files via a symlink attack.
- CVE-2000-0108 UNKNOWN — CVE-2000-0108: The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form f
- CVE-2000-0109 UNKNOWN — CVE-2000-0109: The mcsp Client Site Processor system (MultiCSP) in Standard and Poor's ComStock is installed with several accounts that
- CVE-2000-0110 UNKNOWN — CVE-2000-0110: The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form f
- CVE-2000-0111 UNKNOWN — CVE-2000-0111: The RightFax web client uses predictable session numbers, which allows remote attackers to hijack user sessions.
- CVE-2000-0112 UNKNOWN — CVE-2000-0112: The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot
- CVE-2000-0113 UNKNOWN — CVE-2000-0113: The SyGate Remote Management program does not properly restrict access to its administration service, which allows remot
- CVE-2000-0114 UNKNOWN — CVE-2000-0114: Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST reque
- CVE-2000-0115 UNKNOWN — CVE-2000-0115: IIS allows local users to cause a denial of service via invalid regular expressions in a Visual Basic script in an ASP p
- CVE-2000-0116 UNKNOWN — CVE-2000-0116: Firewall-1 does not properly filter script tags, which allows remote attackers to bypass the "Strip Script Tags" restric
- CVE-2000-0117 UNKNOWN — CVE-2000-0117: The siteUserMod.cgi program in Cobalt RaQ2 servers allows any Site Administrator to modify passwords for other users, si
- CVE-2000-0118 UNKNOWN — CVE-2000-0118: The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which
- CVE-2000-0119 UNKNOWN — CVE-2000-0119: The default configurations for McAfee Virus Scan and Norton Anti-Virus virus checkers do not check files in the RECYCLED
- CVE-2000-0120 UNKNOWN — CVE-2000-0120: The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuth
- CVE-2000-0121 UNKNOWN — CVE-2000-0121: The Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by creating a subdirec
- CVE-2000-0122 UNKNOWN — CVE-2000-0122: Frontpage Server Extensions allows remote attackers to determine the physical path of a virtual directory via a GET requ
- CVE-2000-0123 UNKNOWN — CVE-2000-0123: The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via h
- CVE-2000-0124 UNKNOWN — CVE-2000-0124: surfCONTROL SuperScout does not properly asign a category to web sites with a . (dot) at the end, which may allow users
- CVE-2000-0125 UNKNOWN — CVE-2000-0125: wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote att
- CVE-2000-0126 UNKNOWN — CVE-2000-0126: Sample Internet Data Query (IDQ) scripts in IIS 3 and 4 allow remote attackers to read files via a .. (dot dot) attack.
- CVE-2000-0127 UNKNOWN — CVE-2000-0127: The Webspeed configuration program does not properly disable access to the WSMadmin utility, which allows remote attacke
- CVE-2000-0128 UNKNOWN — CVE-2000-0128: The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.
- CVE-2000-0129 UNKNOWN — CVE-2000-0129: Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of servi
- CVE-2000-0130 UNKNOWN — CVE-2000-0130: Buffer overflow in SCO scohelp program allows remote attackers to execute commands.
- CVE-2000-0131 UNKNOWN — CVE-2000-0131: Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
- CVE-2000-0132 UNKNOWN — CVE-2000-0132: Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function.
- CVE-2000-0133 UNKNOWN — CVE-2000-0133: Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD,
- CVE-2000-0134 UNKNOWN — CVE-2000-0134: The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form
- CVE-2000-0136 UNKNOWN — CVE-2000-0136: The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields
- CVE-2000-0135 UNKNOWN — CVE-2000-0135: The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form field
- CVE-2000-0137 UNKNOWN — CVE-2000-0137: The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields
- CVE-2000-0138 UNKNOWN — CVE-2000-0138: A system has a distributed denial of service (DDOS) attack master, agent, or zombie installed, such as (1) Trinoo, (2) T
- CVE-2000-0139 UNKNOWN — CVE-2000-0139: Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.
- CVE-2000-0142 UNKNOWN — CVE-2000-0142: The authentication protocol in Timbuktu Pro 2.0b650 allows remote attackers to cause a denial of service via connections
- CVE-2000-0140 UNKNOWN — CVE-2000-0140: Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connection
- CVE-2000-0141 UNKNOWN — CVE-2000-0141: Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic
- CVE-2000-0143 UNKNOWN — CVE-2000-0143: The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that
- CVE-2000-0144 UNKNOWN — CVE-2000-0144: Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the passw
- CVE-2000-0145 UNKNOWN — CVE-2000-0145: The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.
- CVE-2000-0146 UNKNOWN — CVE-2000-0146: The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service
- CVE-2000-0147 UNKNOWN — CVE-2000-0147: snmpd in SCO OpenServer has an SNMP community string that is writable by default, which allows local attackers to modify
- CVE-2000-0148 UNKNOWN — CVE-2000-0148: MySQL 3.22 allows remote attackers to bypass password authentication and access a database via a short check string.
- CVE-2000-0149 UNKNOWN — CVE-2000-0149: Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end o
- CVE-2000-0150 UNKNOWN — CVE-2000-0150: Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send
- CVE-2000-0153 UNKNOWN — CVE-2000-0153: FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.
- CVE-2000-0151 UNKNOWN — CVE-2000-0151: GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands.
- CVE-2000-0152 UNKNOWN — CVE-2000-0152: Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connect
- CVE-2000-0155 UNKNOWN — CVE-2000-0155: Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alte
- CVE-2000-0154 UNKNOWN — CVE-2000-0154: The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink attack.
- CVE-2000-0156 UNKNOWN — CVE-2000-0156: Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security d
- CVE-2000-0157 UNKNOWN — CVE-2000-0157: NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process.
- CVE-2000-0158 UNKNOWN — CVE-2000-0158: Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP daemo
- CVE-2000-0160 UNKNOWN — CVE-2000-0160: The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install softwa
- CVE-2000-0161 UNKNOWN — CVE-2000-0161: Sample web sites on Microsoft Site Server 3.0 Commerce Edition do not validate an identification number, which allows re
- CVE-2000-0159 UNKNOWN — CVE-2000-0159: HP Ignite-UX does not save /etc/passwd when it creates an image of a trusted system, which can set the password field to
- CVE-2000-0162 UNKNOWN — CVE-2000-0162: The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicio
- CVE-2000-0164 UNKNOWN — CVE-2000-0164: The installation of Sun Internet Mail Server (SIMS) creates a world-readable file that allows local users to obtain pass
- CVE-2000-0163 UNKNOWN — CVE-2000-0163: asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
- CVE-2000-0165 UNKNOWN — CVE-2000-0165: The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
- CVE-2000-0166 UNKNOWN — CVE-2000-0166: Buffer overflow in the InterAccess telnet server TelnetD allows remote attackers to execute commands via a long login na
- CVE-2000-0167 UNKNOWN — CVE-2000-0167: IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml
- CVE-2000-0168 UNKNOWN — CVE-2000-0168: Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file
- CVE-2000-0169 UNKNOWN — CVE-2000-0169: Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL
- CVE-2000-0170 UNKNOWN — CVE-2000-0170: Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variabl
- CVE-2000-0171 UNKNOWN — CVE-2000-0171: atsadc in the atsar package for Linux does not properly check the permissions of an output file, which allows local user
- CVE-2000-0173 UNKNOWN — CVE-2000-0173: Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
- CVE-2000-0172 UNKNOWN — CVE-2000-0172: The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root
- CVE-2000-0174 UNKNOWN — CVE-2000-0174: StarOffice StarScheduler web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-0175 UNKNOWN — CVE-2000-0175: Buffer overflow in StarOffice StarScheduler web server allows remote attackers to gain root access via a long GET comman
- CVE-2000-0176 UNKNOWN — CVE-2000-0176: The default configuration of Serv-U 2.5d and earlier allows remote attackers to determine the real pathname of the serve
- CVE-2000-0177 UNKNOWN — CVE-2000-0177: DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-0178 UNKNOWN — CVE-2000-0178: ServerIron switches by Foundry Networks have predictable TCP/IP sequence numbers, which allows remote attackers to spoof
- CVE-2000-0179 UNKNOWN — CVE-2000-0179: HP OpenView OmniBack 2.55 allows remote attackers to cause a denial of service via a large number of connections to port
- CVE-2000-0180 UNKNOWN — CVE-2000-0180: Sojourn search engine allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-0183 UNKNOWN — CVE-2000-0183: Buffer overflow in ircII 4.4 IRC client allows remote attackers to execute commands via the DCC chat capability.
- CVE-2000-0182 UNKNOWN — CVE-2000-0182: iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which co
- CVE-2000-0181 UNKNOWN — CVE-2000-0181: Firewall-1 3.0 and 4.0 leaks packets with private IP address information, which could allow remote attackers to determin
- CVE-2000-0184 UNKNOWN — CVE-2000-0184: Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers t
- CVE-2000-0185 UNKNOWN — CVE-2000-0185: RealMedia RealServer reveals the real IP address of a Real Server, even if the address is supposed to be private.
- CVE-2000-0186 UNKNOWN — CVE-2000-0186: Buffer overflow in the dump utility in the Linux ext2fs backup package allows local users to gain privileges via a long
- CVE-2000-0187 UNKNOWN — CVE-2000-0187: EZShopper 3.0 loadpage.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execu
- CVE-2000-0188 UNKNOWN — CVE-2000-0188: EZShopper 3.0 search.cgi CGI script allows remote attackers to read arbitrary files via a .. (dot dot) attack or execute
- CVE-2000-0189 UNKNOWN — CVE-2000-0189: ColdFusion Server 4.x allows remote attackers to determine the real pathname of the server via an HTTP request to the ap
- CVE-2000-0191 UNKNOWN — CVE-2000-0191: Axis StorPoint CD allows remote attackers to access administrator URLs without authentication via a .. (dot dot) attack.
- CVE-2000-0190 UNKNOWN — CVE-2000-0190: AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed A
- CVE-2000-0192 UNKNOWN — CVE-2000-0192: The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to d
- CVE-2000-0193 UNKNOWN — CVE-2000-0193: The default configuration of Dosemu in Corel Linux 1.0 allows local users to execute the system.com program and gain pri
- CVE-2000-0194 UNKNOWN — CVE-2000-0194: buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.
- CVE-2000-0195 UNKNOWN — CVE-2000-0195: setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverr
- CVE-2000-0196 UNKNOWN — CVE-2000-0196: Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME header
- CVE-2000-0197 UNKNOWN — CVE-2000-0197: The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which a
- CVE-2000-0199 UNKNOWN — CVE-2000-0199: When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the "Always prompt for login
- CVE-2000-0198 UNKNOWN — CVE-2000-0198: Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of se
- CVE-2000-0201 UNKNOWN — CVE-2000-0201: The window.showHelp() method in Internet Explorer 5.x does not restrict HTML help files (.chm) to be executed from the l
- CVE-2000-0200 UNKNOWN — CVE-2000-0200: Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands v
- CVE-2000-0202 UNKNOWN — CVE-2000-0202: Microsoft SQL Server 7.0 and Microsoft Data Engine (MSDE) 1.0 allow remote attackers to gain privileges via a malformed
- CVE-2000-0203 UNKNOWN — CVE-2000-0203: The Trend Micro OfficeScan client tmlisten.exe allows remote attackers to cause a denial of service via malformed data t
- CVE-2000-0204 UNKNOWN — CVE-2000-0204: The Trend Micro OfficeScan client allows remote attackers to cause a denial of service by making 5 connections to port 1
- CVE-2000-0205 UNKNOWN — CVE-2000-0205: Trend Micro OfficeScan allows remote attackers to replay administrative commands and modify the configuration of OfficeS
- CVE-2000-0206 UNKNOWN — CVE-2000-0206: The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable pe
- CVE-2000-0207 UNKNOWN — CVE-2000-0207: SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters.
- CVE-2000-0209 UNKNOWN — CVE-2000-0209: Buffer overflow in Lynx 2.x allows remote attackers to crash Lynx and possibly execute commands via a long URL in a mali
- CVE-2000-0210 UNKNOWN — CVE-2000-0210: The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary file
- CVE-2000-0208 UNKNOWN — CVE-2000-0208: The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name wit
- CVE-2000-0211 UNKNOWN — CVE-2000-0211: The Windows Media server allows remote attackers to cause a denial of service via a series of client handshake packets t
- CVE-2000-0212 UNKNOWN — CVE-2000-0212: InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client conf
- CVE-2000-0213 UNKNOWN — CVE-2000-0213: The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to exec
- CVE-2000-0214 UNKNOWN — CVE-2000-0214: FTP Explorer uses weak encryption for storing the username, password, and profile of FTP sites.
- CVE-2000-0215 UNKNOWN — CVE-2000-0215: Vulnerability in SCO cu program in UnixWare 7.x allows local users to gain privileges.
- CVE-2000-0216 UNKNOWN — CVE-2000-0216: Microsoft email clients in Outlook, Exchange, and Windows Messaging automatically respond to Read Receipt and Delivery R
- CVE-2000-0217 UNKNOWN — CVE-2000-0217: The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessio
- CVE-2000-0219 UNKNOWN — CVE-2000-0219: Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.
- CVE-2000-0218 UNKNOWN — CVE-2000-0218: Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
- CVE-2000-0220 UNKNOWN — CVE-2000-0220: ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more in
- CVE-2000-0221 UNKNOWN — CVE-2000-0221: The Nautica Marlin bridge allows remote attackers to cause a denial of service via a zero length UDP packet to the SNMP
- CVE-2000-0222 UNKNOWN — CVE-2000-0222: The installation for Windows 2000 does not activate the Administrator password until the system has rebooted, which allo
- CVE-2000-0223 UNKNOWN — CVE-2000-0223: Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges
- CVE-2000-0224 UNKNOWN — CVE-2000-0224: ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.
- CVE-2000-0225 UNKNOWN — CVE-2000-0225: The Pocsag POC32 program does not properly prevent remote users from accessing its server port, even if the option has b
- CVE-2000-0226 UNKNOWN — CVE-2000-0226: IIS 4.0 allows attackers to cause a denial of service by requesting a large buffer in a POST or PUT command which consum
- CVE-2000-0227 UNKNOWN — CVE-2000-0227: The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max parameter, which a
- CVE-2000-0228 UNKNOWN — CVE-2000-0228: Microsoft Windows Media License Manager allows remote attackers to cause a denial of service by sending a malformed requ
- CVE-2000-0229 UNKNOWN — CVE-2000-0229: gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a
- CVE-2000-0230 UNKNOWN — CVE-2000-0230: Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME enviro
- CVE-2000-0231 UNKNOWN — CVE-2000-0231: Linux kreatecd trusts a user-supplied path that is used to find the cdrecord program, allowing local users to gain root
- CVE-2000-0232 UNKNOWN — CVE-2000-0232: Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denial of service via a m
- CVE-2000-0233 UNKNOWN — CVE-2000-0233: SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges.
- CVE-2000-0234 UNKNOWN — CVE-2000-0234: The default configuration of Cobalt RaQ2 and RaQ3 as specified in access.conf allows remote attackers to view sensitive
- CVE-2000-0235 UNKNOWN — CVE-2000-0235: Buffer overflow in the huh program in the orville-write package allows local users to gain root privileges.
- CVE-2000-0237 UNKNOWN — CVE-2000-0237: Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET r
- CVE-2000-0238 UNKNOWN — CVE-2000-0238: Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a de
- CVE-2000-0236 UNKNOWN — CVE-2000-0236: Netscape Enterprise Server with Directory Indexing enabled allows remote attackers to list server directories via web pu
- CVE-2000-0239 UNKNOWN — CVE-2000-0239: Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mai
- CVE-2000-0240 UNKNOWN — CVE-2000-0240: vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a
- CVE-2000-0241 UNKNOWN — CVE-2000-0241: vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attacke
- CVE-2000-0242 UNKNOWN — CVE-2000-0242: WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters.
- CVE-2000-0243 UNKNOWN — CVE-2000-0243: AnalogX SimpleServer:WWW HTTP server 1.03 allows remote attackers to cause a denial of service via a short GET request t
- CVE-2000-0244 UNKNOWN — CVE-2000-0244: The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.
- CVE-2000-0245 UNKNOWN — CVE-2000-0245: Vulnerability in SGI IRIX objectserver daemon allows remote attackers to create user accounts.
- CVE-2000-0246 UNKNOWN — CVE-2000-0246: IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, wh
- CVE-2000-0247 UNKNOWN — CVE-2000-0247: Unknown vulnerability in Generic-NQS (GNQS) allows local users to gain root privileges.
- CVE-2000-0248 UNKNOWN — CVE-2000-0248: The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password tha
- CVE-2000-0249 UNKNOWN — CVE-2000-0249: The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capabi
- CVE-2000-0250 UNKNOWN — CVE-2000-0250: The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.
- CVE-2000-0251 UNKNOWN — CVE-2000-0251: HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addre
- CVE-2000-0252 UNKNOWN — CVE-2000-0252: The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a
- CVE-2000-0253 UNKNOWN — CVE-2000-0253: The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden
- CVE-2000-0254 UNKNOWN — CVE-2000-0254: The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configurat
- CVE-2000-0256 UNKNOWN — CVE-2000-0256: Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activi
- CVE-2000-0255 UNKNOWN — CVE-2000-0255: The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI
- CVE-2000-0257 UNKNOWN — CVE-2000-0257: Buffer overflow in the NetWare remote web administration utility allows remote attackers to cause a denial of service or
- CVE-2000-0258 UNKNOWN — CVE-2000-0258: IIS 4.0 and 5.0 allows remote attackers to cause a denial of service by sending many URLs with a large number of escaped
- CVE-2000-0259 UNKNOWN — CVE-2000-0259: The default permissions for the Cryptography\Offload registry key used by the OffloadModExpo in Windows NT 4.0 allows lo
- CVE-2000-0260 UNKNOWN — CVE-2000-0260: Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or exec
- CVE-2000-0261 UNKNOWN — CVE-2000-0261: The AVM KEN! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-0262 UNKNOWN — CVE-2000-0262: The AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request.
- CVE-2000-0263 UNKNOWN — CVE-2000-0263: The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request.
- CVE-2000-0264 UNKNOWN — CVE-2000-0264: Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly exec
- CVE-2000-0265 UNKNOWN — CVE-2000-0265: Panda Security 3.0 allows users to uninstall the Panda software via its Add/Remove Programs applet.
- CVE-2000-0267 UNKNOWN — CVE-2000-0267: Cisco Catalyst 5.4.x allows a user to gain access to the "enable" mode without a password.
- CVE-2000-0266 UNKNOWN — CVE-2000-0266: Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that int
- CVE-2000-0268 UNKNOWN — CVE-2000-0268: Cisco IOS 11.x and 12.x allows remote attackers to cause a denial of service by sending the ENVIRON option to the Telnet
- CVE-2000-0269 UNKNOWN — CVE-2000-0269: Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local use
- CVE-2000-0270 UNKNOWN — CVE-2000-0270: The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to c
- CVE-2000-0271 UNKNOWN — CVE-2000-0271: read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows
- CVE-2000-0272 UNKNOWN — CVE-2000-0272: RealNetworks RealServer allows remote attackers to cause a denial of service by sending malformed input to the server at
- CVE-2000-0273 UNKNOWN — CVE-2000-0273: PCAnywhere allows remote attackers to cause a denial of service by terminating the connection before PCAnywhere provides
- CVE-2000-0274 UNKNOWN — CVE-2000-0274: The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a lo
- CVE-2000-0275 UNKNOWN — CVE-2000-0275: CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with acces
- CVE-2000-0276 UNKNOWN — CVE-2000-0276: BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls using interrupt 37.
- CVE-2000-0277 UNKNOWN — CVE-2000-0277: Microsoft Excel 97 and 2000 does not warn the user when executing Excel Macro Language (XLM) macros in external text fil
- CVE-2000-0279 UNKNOWN — CVE-2000-0279: BeOS allows remote attackers to cause a denial of service via malformed packets whose length field is less than the leng
- CVE-2000-0280 UNKNOWN — CVE-2000-0280: Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of serv
- CVE-2000-0281 UNKNOWN — CVE-2000-0281: Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message.
- CVE-2000-0282 UNKNOWN — CVE-2000-0282: TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a ..
- CVE-2000-0283 UNKNOWN — CVE-2000-0283: The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via
- CVE-2000-0284 UNKNOWN — CVE-2000-0284: Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via
- CVE-2000-0285 UNKNOWN — CVE-2000-0285: Buffer overflow in XFree86 3.3.x allows local users to execute arbitrary commands via a long -xkbmap parameter.
- CVE-2000-0287 UNKNOWN — CVE-2000-0287: The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in
- CVE-2000-0286 UNKNOWN — CVE-2000-0286: X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
- CVE-2000-0288 UNKNOWN — CVE-2000-0288: Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form v
- CVE-2000-0289 UNKNOWN — CVE-2000-0289: IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying
- CVE-2000-0290 UNKNOWN — CVE-2000-0290: Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request.
- CVE-2000-0291 UNKNOWN — CVE-2000-0291: Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a docume
- CVE-2000-0292 UNKNOWN — CVE-2000-0292: The Adtran MX2800 M13 Multiplexer allows remote attackers to cause a denial of service via a ping flood to the Ethernet
- CVE-2000-0293 UNKNOWN — CVE-2000-0293: aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating
- CVE-2000-0295 UNKNOWN — CVE-2000-0295: Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command.
- CVE-2000-0294 UNKNOWN — CVE-2000-0294: Buffer overflow in healthd for FreeBSD allows local users to gain root privileges.
- CVE-2000-0297 UNKNOWN — CVE-2000-0297: Allaire Forums 2.0.5 allows remote attackers to bypass access restrictions to secure conferences via the rightAccessAllF
- CVE-2000-0296 UNKNOWN — CVE-2000-0296: fcheck allows local users to gain privileges by embedding shell metacharacters into file names that are processed by fch
- CVE-2000-0298 UNKNOWN — CVE-2000-0298: The unattended installation of Windows 2000 with the OEMPreinstall option sets insecure permissions for the All Users an
- CVE-2000-0299 UNKNOWN — CVE-2000-0299: Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of s
- CVE-2000-0300 UNKNOWN — CVE-2000-0300: The default encryption method of PcAnywhere 9.x uses weak encryption, which allows remote attackers to sniff and decrypt
- CVE-2000-0301 UNKNOWN — CVE-2000-0301: Ipswitch IMAIL server 6.02 and earlier allows remote attackers to cause a denial of service via the AUTH CRAM-MD5 comman
- CVE-2000-0302 UNKNOWN — CVE-2000-0302: Microsoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename i
- CVE-2000-0303 UNKNOWN — CVE-2000-0303: Quake3 Arena allows malicious server operators to read or modify files on a client via a dot dot (..) attack.
- CVE-2000-0304 UNKNOWN — CVE-2000-0304: Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of s
- CVE-2000-0305 UNKNOWN — CVE-2000-0305: Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a den
- CVE-2000-0311 UNKNOWN — CVE-2000-0311: The Windows 2000 domain controller allows a malicious user to modify Active Directory information by modifying an unprot
- CVE-2000-0316 UNKNOWN — CVE-2000-0316: Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.
- CVE-2000-0317 UNKNOWN — CVE-2000-0317: Buffer overflow in Solaris 7 lpset allows local users to gain root privileges via a long -r option.
- CVE-2000-0318 UNKNOWN — CVE-2000-0318: Atrium Mercur Mail Server 3.2 allows local attackers to read other user's email and create arbitrary files via a dot dot
- CVE-2000-0319 UNKNOWN — CVE-2000-0319: mail.local in Sendmail 8.10.x does not properly identify the .\n string which identifies the end of message text, which
- CVE-2000-0320 UNKNOWN — CVE-2000-0320: Qpopper 2.53 and 3.0 does not properly identify the \n string which identifies the end of message text, which allows a r
- CVE-2000-0321 UNKNOWN — CVE-2000-0321: Buffer overflow in IC Radius package allows a remote attacker to cause a denial of service via a long user name.
- CVE-2000-0322 UNKNOWN — CVE-2000-0322: The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary command
- CVE-2000-0323 UNKNOWN — CVE-2000-0323: The Microsoft Jet database engine allows an attacker to modify text files via a database query, aka the "Text I-ISAM" vu
- CVE-2000-0324 UNKNOWN — CVE-2000-0324: pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap.
- CVE-2000-0325 UNKNOWN — CVE-2000-0325: The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulne
- CVE-2000-0326 UNKNOWN — CVE-2000-0326: Meeting Maker uses weak encryption (a polyalphabetic substitution cipher) for passwords, which allows remote attackers t
- CVE-2000-0327 UNKNOWN — CVE-2000-0327: Microsoft Virtual Machine (VM) allows remote attackers to escape the Java sandbox and execute commands via an applet con
- CVE-2000-0328 UNKNOWN — CVE-2000-0328: Windows NT 4.0 generates predictable random TCP initial sequence numbers (ISN), which allows remote attackers to perform
- CVE-2000-0329 UNKNOWN — CVE-2000-0329: A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedd
- CVE-2000-0330 UNKNOWN — CVE-2000-0330: The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name st
- CVE-2000-0331 UNKNOWN — CVE-2000-0331: Buffer overflow in Microsoft command processor (CMD.EXE) for Windows NT and Windows 2000 allows a local user to cause a
- CVE-2000-0332 UNKNOWN — CVE-2000-0332: UltraBoard.pl or UltraBoard.cgi CGI scripts in UltraBoard 1.6 allows remote attackers to read arbitrary files via a path
- CVE-2000-0333 UNKNOWN — CVE-2000-0333: tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS pack
- CVE-2000-0334 UNKNOWN — CVE-2000-0334: The Allaire Spectra container editor preview tool does not properly enforce object security, which allows an attacker to
- CVE-2000-0335 UNKNOWN — CVE-2000-0335: The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.
- CVE-2000-0336 UNKNOWN — CVE-2000-0336: Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack.
- CVE-2000-0337 UNKNOWN — CVE-2000-0337: Buffer overflow in Xsun X server in Solaris 7 allows local users to gain root privileges via a long -dev parameter.
- CVE-2000-0339 UNKNOWN — CVE-2000-0339: ZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypa
- CVE-2000-0338 UNKNOWN — CVE-2000-0338: Concurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause
- CVE-2000-0340 UNKNOWN — CVE-2000-0340: Buffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environme
- CVE-2000-0341 UNKNOWN — CVE-2000-0341: ATRIUM Cassandra NNTP Server 1.10 allows remote attackers to cause a denial of service via a long login name.
- CVE-2000-0342 UNKNOWN — CVE-2000-0342: Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by
- CVE-2000-0343 UNKNOWN — CVE-2000-0343: Buffer overflow in Sniffit 0.3.x with the -L logging option enabled allows remote attackers to execute arbitrary command
- CVE-2000-0344 UNKNOWN — CVE-2000-0344: The knfsd NFS server in Linux kernel 2.2.x allows remote attackers to cause a denial of service via a negative size valu
- CVE-2000-0345 UNKNOWN — CVE-2000-0345: The on-line help system options in Cisco routers allows non-privileged users without "enabled" access to obtain sensitiv
- CVE-2000-0346 UNKNOWN — CVE-2000-0346: AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range requ
- CVE-2000-0347 UNKNOWN — CVE-2000-0347: Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with
- CVE-2000-0350 UNKNOWN — CVE-2000-0350: A debugging feature in NetworkICE ICEcap 2.0.23 and earlier is enabled, which allows a remote attacker to bypass the wea
- CVE-2000-0352 UNKNOWN — CVE-2000-0352: Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execu
- CVE-2000-0353 UNKNOWN — CVE-2000-0353: Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a
- CVE-2000-0356 UNKNOWN — CVE-2000-0356: Pluggable Authentication Modules (PAM) in Red Hat Linux 6.1 does not properly lock access to disabled NIS accounts.
- CVE-2000-0355 UNKNOWN — CVE-2000-0355: pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
- CVE-2000-0357 UNKNOWN — CVE-2000-0357: ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the auth
- CVE-2000-0361 UNKNOWN — CVE-2000-0361: The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which a
- CVE-2000-0358 UNKNOWN — CVE-2000-0358: ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
- CVE-2000-0362 UNKNOWN — CVE-2000-0362: Buffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges.
- CVE-2000-0363 UNKNOWN — CVE-2000-0363: Linux cdwtools 093 and earlier allows local users to gain root privileges via the /tmp directory.
- CVE-2000-0364 UNKNOWN — CVE-2000-0364: screen and rxvt in Red Hat Linux 6.0 do not properly set the modes of tty devices, which allows local users to write to
- CVE-2000-0365 UNKNOWN — CVE-2000-0365: Red Hat Linux 6.0 installs the /dev/pts file system with insecure modes, which allows local users to write to other tty
- CVE-2000-0366 UNKNOWN — CVE-2000-0366: dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to modify the ownership of ar
- CVE-2000-0367 UNKNOWN — CVE-2000-0367: Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.
- CVE-2000-0369 UNKNOWN — CVE-2000-0369: The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to
- CVE-2000-0370 UNKNOWN — CVE-2000-0370: The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D o
- CVE-2000-0371 UNKNOWN — CVE-2000-0371: The libmediatool library used for the KDE mediatool allows local users to create arbitrary files via a symlink attack.
- CVE-2000-0373 UNKNOWN — CVE-2000-0373: Vulnerabilities in the KDE kvt terminal program allow local users to gain root privileges.
- CVE-2000-0374 UNKNOWN — CVE-2000-0374: The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connectio
- CVE-2000-0378 UNKNOWN — CVE-2000-0378: The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file desc
- CVE-2000-0379 UNKNOWN — CVE-2000-0379: The Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if the administrator has
- CVE-2000-0380 UNKNOWN — CVE-2000-0380: The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a deni
- CVE-2000-0381 UNKNOWN — CVE-2000-0381: The Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup informati
- CVE-2000-0382 UNKNOWN — CVE-2000-0382: ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitiv
- CVE-2000-0383 UNKNOWN — CVE-2000-0383: The file transfer component of AOL Instant Messenger (AIM) reveals the physical path of the transferred file to the remo
- CVE-2000-0384 UNKNOWN — CVE-2000-0384: NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable f
- CVE-2000-0385 UNKNOWN — CVE-2000-0385: FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML p
- CVE-2000-0386 UNKNOWN — CVE-2000-0386: FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
- CVE-2000-0387 UNKNOWN — CVE-2000-0387: The makelev program in the golddig game from the FreeBSD ports collection allows local users to overwrite arbitrary file
- CVE-2000-0388 UNKNOWN — CVE-2000-0388: Buffer overflow in FreeBSD libmytinfo library allows local users to execute commands via a long TERMCAP environmental va
- CVE-2000-0389 UNKNOWN — CVE-2000-0389: Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
- CVE-2000-0390 UNKNOWN — CVE-2000-0390: Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges.
- CVE-2000-0391 UNKNOWN — CVE-2000-0391: Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges.
- CVE-2000-0392 UNKNOWN — CVE-2000-0392: Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges.
- CVE-2000-0393 UNKNOWN — CVE-2000-0393: The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variabl
- CVE-2000-0394 UNKNOWN — CVE-2000-0394: NetProwler 3.0 allows remote attackers to cause a denial of service by sending malformed IP packets that trigger NetProw
- CVE-2000-0395 UNKNOWN — CVE-2000-0395: Buffer overflow in CProxy 3.3 allows remote users to cause a denial of service via a long HTTP request.
- CVE-2000-0396 UNKNOWN — CVE-2000-0396: The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, whic
- CVE-2000-0397 UNKNOWN — CVE-2000-0397: The EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote a
- CVE-2000-0398 UNKNOWN — CVE-2000-0398: Buffer overflow in wconsole.dll in Rockliffe MailSite Management Agent allows remote attackers to execute arbitrary comm
- CVE-2000-0399 UNKNOWN — CVE-2000-0399: Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
- CVE-2000-0400 UNKNOWN — CVE-2000-0400: The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded,
- CVE-2000-0401 UNKNOWN — CVE-2000-0401: Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary c
- CVE-2000-0403 UNKNOWN — CVE-2000-0403: The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of service by sending a l
- CVE-2000-0404 UNKNOWN — CVE-2000-0404: The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame t
- CVE-2000-0405 UNKNOWN — CVE-2000-0405: Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response pa
- CVE-2000-0406 UNKNOWN — CVE-2000-0406: Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows rem
- CVE-2000-0407 UNKNOWN — CVE-2000-0407: Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.
- CVE-2000-0408 UNKNOWN — CVE-2000-0408: IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a l
- CVE-2000-0409 UNKNOWN — CVE-2000-0409: Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite file
- CVE-2000-0410 UNKNOWN — CVE-2000-0410: ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE ta
- CVE-2000-0411 UNKNOWN — CVE-2000-0411: Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter
- CVE-2000-0412 UNKNOWN — CVE-2000-0412: The gnapster and knapster clients for Napster do not properly restrict access only to MP3 files, which allows remote att
- CVE-2000-0413 UNKNOWN — CVE-2000-0413: The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the ph
- CVE-2000-0414 UNKNOWN — CVE-2000-0414: Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed inp
- CVE-2000-0415 UNKNOWN — CVE-2000-0415: Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has
- CVE-2000-0416 UNKNOWN — CVE-2000-0416: NTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail's web co
- CVE-2000-0417 UNKNOWN — CVE-2000-0417: The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service v
- CVE-2000-0418 UNKNOWN — CVE-2000-0418: The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) request
- CVE-2000-0419 UNKNOWN — CVE-2000-0419: The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthori
- CVE-2000-0420 UNKNOWN — CVE-2000-0420: The default configuration of SYSKEY in Windows 2000 stores the startup key in the registry, which could allow an attacke
- CVE-2000-0421 UNKNOWN — CVE-2000-0421: The process_bug.cgi script in Bugzilla allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-0422 UNKNOWN — CVE-2000-0422: Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken p
- CVE-2000-0423 UNKNOWN — CVE-2000-0423: Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters
- CVE-2000-0424 UNKNOWN — CVE-2000-0424: The CGI counter 4.0.7 by George Burgyan allows remote attackers to execute arbitrary commands via shell metacharacters.
- CVE-2000-0425 UNKNOWN — CVE-2000-0425: Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary comman
- CVE-2000-0426 UNKNOWN — CVE-2000-0426: UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the S
- CVE-2000-0427 UNKNOWN — CVE-2000-0427: The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive info
- CVE-2000-0428 UNKNOWN — CVE-2000-0428: Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitr
- CVE-2000-0429 UNKNOWN — CVE-2000-0429: A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.
- CVE-2000-0431 UNKNOWN — CVE-2000-0431: Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPag
- CVE-2000-0430 UNKNOWN — CVE-2000-0430: Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
- CVE-2000-0432 UNKNOWN — CVE-2000-0432: The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary com
- CVE-2000-0433 UNKNOWN — CVE-2000-0433: The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to g
- CVE-2000-0434 UNKNOWN — CVE-2000-0434: The administrative password for the Allmanage web site administration software is stored in plaintext in a file which co
- CVE-2000-0435 UNKNOWN — CVE-2000-0435: The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by
- CVE-2000-0436 UNKNOWN — CVE-2000-0436: MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attac
- CVE-2000-0437 UNKNOWN — CVE-2000-0437: Buffer overflow in the CyberPatrol daemon "cyberdaemon" used in gauntlet and WebShield allows remote attackers to cause
- CVE-2000-0438 UNKNOWN — CVE-2000-0438: Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a
- CVE-2000-0440 UNKNOWN — CVE-2000-0440: NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP t
- CVE-2000-0439 UNKNOWN — CVE-2000-0439: Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that
- CVE-2000-0441 UNKNOWN — CVE-2000-0441: Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX f
- CVE-2000-0442 UNKNOWN — CVE-2000-0442: Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is pro
- CVE-2000-0443 UNKNOWN — CVE-2000-0443: The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attac
- CVE-2000-0444 UNKNOWN — CVE-2000-0444: HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.
- CVE-2000-0445 UNKNOWN — CVE-2000-0445: The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair gener
- CVE-2000-0446 UNKNOWN — CVE-2000-0446: Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.
- CVE-2000-0447 UNKNOWN — CVE-2000-0447: Buffer overflow in WebShield SMTP 4.5.44 allows remote attackers to execute arbitrary commands via a long configuration
- CVE-2000-0448 UNKNOWN — CVE-2000-0448: The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP ad
- CVE-2000-0449 UNKNOWN — CVE-2000-0449: Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.
- CVE-2000-0450 UNKNOWN — CVE-2000-0450: Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.
- CVE-2000-0452 UNKNOWN — CVE-2000-0452: Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service v
- CVE-2000-0453 UNKNOWN — CVE-2000-0453: XFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet
- CVE-2000-0451 UNKNOWN — CVE-2000-0451: The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP
- CVE-2000-0454 UNKNOWN — CVE-2000-0454: Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.
- CVE-2000-0455 UNKNOWN — CVE-2000-0455: Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memor
- CVE-2000-0456 UNKNOWN — CVE-2000-0456: NetBSD 1.4.2 and earlier allows local users to cause a denial of service by repeatedly running certain system calls in t
- CVE-2000-0457 UNKNOWN — CVE-2000-0457: ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large nu
- CVE-2000-0458 UNKNOWN — CVE-2000-0458: The MSWordView application in IMP creates world-readable files in the /tmp directory, which allows other local users to
- CVE-2000-0459 UNKNOWN — CVE-2000-0459: IMP does not remove files properly if the MSWordView application quits, which allows local users to cause a denial of se
- CVE-2000-0461 UNKNOWN — CVE-2000-0461: The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denia
- CVE-2000-0460 UNKNOWN — CVE-2000-0460: Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.
- CVE-2000-0462 UNKNOWN — CVE-2000-0462: ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which al
- CVE-2000-0463 UNKNOWN — CVE-2000-0463: BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.
- CVE-2000-0464 UNKNOWN — CVE-2000-0464: Internet Explorer 4.x and 5.x allows remote attackers to execute arbitrary commands via a buffer overflow in the ActiveX
- CVE-2000-0465 UNKNOWN — CVE-2000-0465: Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a re
- CVE-2000-0472 UNKNOWN — CVE-2000-0472: Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a lo
- CVE-2000-0469 UNKNOWN — CVE-2000-0469: Selena Sol WebBanner 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-2000-0481 UNKNOWN — CVE-2000-0481: Buffer overflow in KDE Kmail allows a remote attacker to cause a denial of service via an attachment with a long file na
- CVE-2000-0489 UNKNOWN — CVE-2000-0489: FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs u
- CVE-2000-0491 UNKNOWN — CVE-2000-0491: Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary co
- CVE-2000-0508 UNKNOWN — CVE-2000-0508: rpc.lockd in Red Hat Linux 6.1 and 6.2 allows remote attackers to cause a denial of service via a malformed request.
- CVE-2000-0517 UNKNOWN — CVE-2000-0517: Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previousl
- CVE-2000-0531 UNKNOWN — CVE-2000-0531: Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets
- CVE-2000-0551 UNKNOWN — CVE-2000-0551: The file transfer mechanism in Danware NetOp 6.0 does not provide authentication, which allows remote attackers to acces
- CVE-2000-0553 UNKNOWN — CVE-2000-0553: Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" ru
- CVE-2000-0564 UNKNOWN — CVE-2000-0564: The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a den
- CVE-2000-0613 UNKNOWN — CVE-2000-0613: Cisco Secure PIX Firewall does not properly identify forged TCP Reset (RST) packets, which allows remote attackers to fo
- CVE-2000-0634 UNKNOWN — CVE-2000-0634: The web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files v
- CVE-2000-1205 UNKNOWN — CVE-2000-1205: Cross site scripting vulnerabilities in Apache 1.3.0 through 1.3.11 allow remote attackers to execute script as other we
- CVE-2000-1206 UNKNOWN — CVE-2000-1206: Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_al
- CVE-2000-1216 UNKNOWN — CVE-2000-1216: Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_
- CVE-2000-1218 UNKNOWN — CVE-2000-1218: The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMa
- CVE-2000-1220 UNKNOWN — CVE-2000-1220: The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root pri
- CVE-2000-1221 UNKNOWN — CVE-2000-1221: The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reve
- CVE-2001-0679 UNKNOWN — CVE-2001-0679: A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a lo