|
313051
|
2.1 |
LOW
|
netbsd
|
netbsd
|
Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS.
|
NVD-CWE-Other
|
CVE-1999-0446
|
2008-09-9 21:34 |
1999-04-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313052
|
7.8 |
HIGH
|
microsoft
|
internet_information_server
|
The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.
|
NVD-CWE-Other
|
CVE-1999-0449
|
2008-09-9 21:34 |
1999-01-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313053
|
7.5 |
HIGH
|
allaire
|
coldfusion_server
|
The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly.
|
NVD-CWE-Other
|
CVE-1999-0455
|
2008-09-9 21:34 |
1999-12-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313054
|
7.2 |
HIGH
|
debian
|
debian_linux
|
Linux ftpwatch program allows local users to gain root privileges.
|
NVD-CWE-Other
|
CVE-1999-0457
|
2008-09-9 21:34 |
1999-01-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313055
|
2.1 |
LOW
|
l0pht
|
l0phtcrack
|
L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
|
NVD-CWE-Other
|
CVE-1999-0458
|
2008-09-9 21:34 |
1999-01-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313056
|
7.2 |
HIGH
|
suse
|
suse_linux
|
suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy …
|
NVD-CWE-Other
|
CVE-1999-0462
|
2008-09-9 21:34 |
1999-03-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313057
|
5.0 |
MEDIUM
|
l0pht
|
l0phtcrack
|
Remote attackers can perform a denial of service using IRIX fcagent.
|
NVD-CWE-Other
|
CVE-1999-0463
|
2008-09-9 21:34 |
1998-12-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313058
|
7.2 |
HIGH
|
netbsd
|
netbsd
|
The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and earlier allows a local user to read or write arbitrary files on the disk associated with that device.
|
NVD-CWE-Other
|
CVE-1999-0466
|
2008-09-9 21:34 |
1999-04-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313059
|
5.0 |
MEDIUM
|
novell
|
netware
|
A weak encryption algorithm is used for passwords in Novell Remote.NLM, allowing them to be easily decrypted.
|
NVD-CWE-Other
|
CVE-1999-0470
|
2008-09-9 21:34 |
1999-04-9 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313060
|
2.1 |
LOW
|
andrew_tridgell
|
rsync
|
The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred.
|
NVD-CWE-Other
|
CVE-1999-0473
|
2008-09-9 21:34 |
1999-04-7 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313061
|
5.0 |
MEDIUM
|
sendmail
|
sendmail
|
Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
|
NVD-CWE-Other
|
CVE-1999-0478
|
2008-09-9 21:34 |
1998-12-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313062
|
5.0 |
MEDIUM
|
netscape hp
|
enterprise_server hp-ux
|
Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.
|
NVD-CWE-Other
|
CVE-1999-0479
|
2008-09-9 21:34 |
1999-03-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313063
|
5.0 |
MEDIUM
|
openbsd
|
openbsd
|
Denial of service in "poll" in OpenBSD.
|
NVD-CWE-Other
|
CVE-1999-0481
|
2008-09-9 21:34 |
1999-03-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313064
|
5.0 |
MEDIUM
|
openbsd
|
openbsd
|
OpenBSD kernel crash through TSS handling, as caused by the crashme program.
|
NVD-CWE-Other
|
CVE-1999-0482
|
2008-09-9 21:34 |
1999-03-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313065
|
2.1 |
LOW
|
openbsd
|
openbsd
|
OpenBSD crash using nlink value in FFS and EXT2FS filesystems.
|
NVD-CWE-Other
|
CVE-1999-0483
|
2008-09-9 21:34 |
1999-02-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313066
|
2.1 |
LOW
|
openbsd
|
openbsd
|
Buffer overflow in OpenBSD ping.
|
NVD-CWE-Other
|
CVE-1999-0484
|
2008-09-9 21:34 |
1999-02-23 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313067
|
2.6 |
LOW
|
openbsd
|
openbsd
|
Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.
|
NVD-CWE-Other
|
CVE-1999-0485
|
2008-09-9 21:34 |
1999-02-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313068
|
10.0 |
HIGH
|
x.org
|
x11
|
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
|
NVD-CWE-Other
|
CVE-1999-0526
|
2008-09-9 21:34 |
1997-07-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313069
|
10.0 |
HIGH
|
netscape university_of_washington
|
messaging_server imap
|
Arbitrary command execution via IMAP buffer overflow in authenticate command.
|
NVD-CWE-Other
|
CVE-1999-0005
|
2008-09-9 21:33 |
1998-07-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313070
|
7.2 |
HIGH
|
cde hp ibm
|
cde hp-ux vvos aix
|
Unauthorized privileged access or denial of service via dtappgather program in CDE.
|
NVD-CWE-Other
|
CVE-1999-0014
|
2008-09-9 21:33 |
1998-01-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313071
|
5.0 |
MEDIUM
|
cisco gnu microsoft hp netbsd sun
|
ios inet winsock hp-ux windows_95 windows_nt netbsd sunos
|
Land IP denial of service.
|
NVD-CWE-Other
|
CVE-1999-0016
|
2008-09-9 21:33 |
1997-12-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313072
|
5.0 |
MEDIUM
|
data_general ncr sgi ibm nighthawk sco sun
|
dg_ux mp-ras irix aix cx_ux powerux open_desktop openserver unixware sunos
|
Delete or create a file via rpc.statd, due to invalid information.
|
NVD-CWE-Other
|
CVE-1999-0019
|
2008-09-9 21:33 |
1996-04-24 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313073
|
7.5 |
HIGH
|
muhammad_a._muquit
|
wwwcount
|
Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program.
|
NVD-CWE-Other
|
CVE-1999-0021
|
2008-09-9 21:33 |
1997-11-5 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313074
|
7.2 |
HIGH
|
sgi bsdi freebsd next sun
|
irix bsd_os freebsd nextstep sunos
|
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.
|
NVD-CWE-Other
|
CVE-1999-0032
|
2008-09-9 21:33 |
1996-10-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313075
|
7.2 |
HIGH
|
sgi
|
irix
|
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
|
NVD-CWE-Other
|
CVE-1999-0044
|
2008-09-9 21:33 |
1996-12-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313076
|
10.0 |
HIGH
|
eric_allman bsdi caldera
|
sendmail bsd_os openlinux
|
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
|
NVD-CWE-Other
|
CVE-1999-0047
|
2008-09-9 21:33 |
1997-01-28 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313077
|
10.0 |
HIGH
|
debian ibm nec
|
netkit aix asl_ux_4800 ews-ux_v up-ux_v
|
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
|
NVD-CWE-Other
|
CVE-1999-0048
|
2008-09-9 21:33 |
1997-01-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313078
|
7.5 |
HIGH
|
eric_allman freebsd hp ibm sun
|
vacation freebsd hp-ux vvos aix solaris sunos
|
Vacation program allows command execution by remote users through a sendmail command.
|
NVD-CWE-Other
|
CVE-1999-0057
|
2008-09-9 21:33 |
1998-11-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313079
|
7.5 |
HIGH
|
php
|
php
|
Buffer overflow in PHP cgi program, php.cgi allows shell access.
|
NVD-CWE-Other
|
CVE-1999-0058
|
2008-09-9 21:33 |
1997-04-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313080
|
7.2 |
HIGH
|
openbsd
|
openbsd
|
The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage.
|
NVD-CWE-Other
|
CVE-1999-0062
|
2008-09-9 21:33 |
1998-08-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313081
|
7.5 |
HIGH
|
php
|
php
|
CGI PHP mylog script allows an attacker to read any file on the target server.
|
NVD-CWE-Other
|
CVE-1999-0068
|
2008-09-9 21:33 |
1997-10-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313082
|
5.0 |
MEDIUM
|
washington_university
|
wu-ftpd
|
PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password.
|
NVD-CWE-Other
|
CVE-1999-0075
|
2008-09-9 21:33 |
1996-10-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313083
|
10.0 |
HIGH
|
ftp ftpcd
|
ftp ftpcd
|
CWD ~root command in ftpd allows root access.
|
NVD-CWE-Other
|
CVE-1999-0082
|
2008-09-9 21:33 |
1988-11-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313084
|
5.0 |
MEDIUM
|
ibm
|
aix
|
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
|
NVD-CWE-Other
|
CVE-1999-0087
|
2008-09-9 21:33 |
1998-02-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313085
|
5.0 |
MEDIUM
|
bsdi freebsd sco
|
bsd_os freebsd internet_faststart openserver
|
Sendmail decode alias can be used to overwrite sensitive files.
|
NVD-CWE-Other
|
CVE-1999-0096
|
2008-09-9 21:33 |
1996-12-10 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313086
|
10.0 |
HIGH
|
ibm
|
aix
|
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
|
NVD-CWE-Other
|
CVE-1999-0101
|
2008-09-9 21:33 |
1996-12-10 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313087
|
7.2 |
HIGH
|
ibm
|
aix
|
AIX bugfiler program allows local users to gain root access.
|
NVD-CWE-Other
|
CVE-1999-0115
|
2008-09-9 21:33 |
1997-09-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313088
|
5.0 |
MEDIUM
|
ibm
|
aix sng
|
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
|
NVD-CWE-Other
|
CVE-1999-0116
|
2008-09-9 21:33 |
1996-09-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313089
|
7.2 |
HIGH
|
xfree86_project
|
xfree86
|
SGI IRIX buffer overflow in xterm and Xaw allows root access.
|
NVD-CWE-Other
|
CVE-1999-0126
|
2008-09-9 21:33 |
1998-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313090
|
7.2 |
HIGH
|
caldera eric_allman bsdi freebsd hp ibm redhat
|
network_desktop sendmail bsd_os freebsd hp-ux aix linux
|
Local users can start Sendmail in daemon mode and gain root privileges.
|
NVD-CWE-Other
|
CVE-1999-0130
|
2008-09-9 21:33 |
1996-11-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313091
|
7.2 |
HIGH
|
eric_allman bsdi digital freebsd hp ibm redhat sco
|
sendmail bsd_os osf_1 freebsd hp-ux aix linux internet_faststart openserver
|
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
|
NVD-CWE-Other
|
CVE-1999-0131
|
2008-09-9 21:33 |
1996-09-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313092
|
7.2 |
HIGH
|
sun
|
sunos
|
vold in Solaris 2.x allows local users to gain root access.
|
NVD-CWE-Other
|
CVE-1999-0134
|
2008-09-9 21:33 |
1996-08-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313093
|
3.7 |
LOW
|
netscape
|
navigator
|
Java Bytecode Verifier allows malicious applets to execute arbitrary commands as the user of the applet.
|
NVD-CWE-Other
|
CVE-1999-0141
|
2008-09-9 21:33 |
1996-03-29 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313094
|
7.5 |
HIGH
|
sgi
|
irix
|
The handler CGI program in IRIX allows arbitrary command execution.
|
NVD-CWE-Other
|
CVE-1999-0148
|
2008-09-9 21:33 |
1997-09-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313095
|
5.0 |
MEDIUM
|
microsoft sco
|
windows_2000 windows_95 windows_nt openserver
|
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
|
NVD-CWE-Other
|
CVE-1999-0153
|
2008-09-9 21:33 |
1997-07-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313096
|
7.5 |
HIGH
|
cisco
|
ios
|
Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections.
|
NVD-CWE-Other
|
CVE-1999-0160
|
2008-09-9 21:33 |
1997-10-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313097
|
7.5 |
HIGH
|
cisco
|
ios
|
In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
|
NVD-CWE-Other
|
CVE-1999-0161
|
2008-09-9 21:33 |
1995-07-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313098
|
6.2 |
MEDIUM
|
sun
|
sunos
|
A race condition in the Solaris ps command allows an attacker to overwrite critical files.
|
NVD-CWE-Other
|
CVE-1999-0164
|
2008-09-9 21:33 |
1995-08-29 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313099
|
10.0 |
HIGH
|
samba
|
samba
|
Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.
|
NVD-CWE-Other
|
CVE-1999-0182
|
2008-09-9 21:33 |
1997-09-30 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313100
|
10.0 |
HIGH
|
sun
|
solaris
|
In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands as root, or modify system parameters.
|
NVD-CWE-Other
|
CVE-1999-0186
|
2008-09-9 21:33 |
1998-10-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|