|
354901
|
5.0 |
MEDIUM
|
t._hauck
|
jana_web_server
|
Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-1999-1083
|
2016-10-18 11:01 |
1999-10-8 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354902
|
5.0 |
MEDIUM
|
ssh
|
secure_shell
|
SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream be…
|
NVD-CWE-Other
|
CVE-1999-1085
|
2016-10-18 11:01 |
1998-06-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354903
|
10.0 |
HIGH
|
novell
|
netware
|
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets t…
|
NVD-CWE-Other
|
CVE-1999-1086
|
2016-10-18 11:01 |
1999-07-15 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354904
|
4.6 |
MEDIUM
|
iain_lea
|
tin
|
tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file.
|
NVD-CWE-Other
|
CVE-1999-1092
|
2016-10-18 11:01 |
1999-11-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354905
|
7.2 |
HIGH
|
redhat slackware
|
linux slackware_linux
|
sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are writable by the user running sort, as observed in updatedb and other programs that…
|
NVD-CWE-Other
|
CVE-1999-1095
|
2016-10-18 11:01 |
1997-10-6 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354906
|
4.6 |
MEDIUM
|
microsoft
|
windows_95
|
Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords.
|
NVD-CWE-Other
|
CVE-1999-1104
|
2016-10-18 11:01 |
1999-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354907
|
5.0 |
MEDIUM
|
sendmail
|
sendmail
|
Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands a…
|
NVD-CWE-Other
|
CVE-1999-1109
|
2016-10-18 11:01 |
1999-12-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354908
|
5.0 |
MEDIUM
|
eudora
|
internet_mail_server
|
Buffer overflow in Eudora Internet Mail Server (EIMS) 2.01 and earlier on MacOS systems allows remote attackers to cause a denial of service via a long USER command to port 106.
|
NVD-CWE-Other
|
CVE-1999-1113
|
2016-10-18 11:01 |
1998-04-14 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354909
|
10.0 |
HIGH
|
oracle
|
http_server
|
Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gai…
|
NVD-CWE-Other
|
CVE-1999-1125
|
2016-10-18 11:01 |
1997-09-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354910
|
5.0 |
MEDIUM
|
netscape
|
enterprise_server
|
Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command u…
|
NVD-CWE-Other
|
CVE-1999-1130
|
2016-10-18 11:01 |
1999-07-30 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354911
|
5.0 |
MEDIUM
|
microsoft
|
windows_nt
|
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a…
|
NVD-CWE-Other
|
CVE-1999-1132
|
2016-10-18 11:01 |
1999-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354912
|
10.0 |
HIGH
|
hp
|
hp-ux
|
Vulnerability in ftpd/kftpd in HP-UX 10.x and 9.x allows local and possibly remote users to gain root privileges.
|
NVD-CWE-Other
|
CVE-1999-1160
|
2016-10-18 11:01 |
1997-02-2 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354913
|
7.5 |
HIGH
|
hp
|
9000
|
Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via the Service Support Processor (SSP) Teststation.
|
NVD-CWE-Other
|
CVE-1999-1163
|
2016-10-18 11:01 |
1999-11-24 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354914
|
5.0 |
MEDIUM
|
microsoft
|
outlook outlook_express
|
Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang.
|
NVD-CWE-Other
|
CVE-1999-1164
|
2016-10-18 11:01 |
1999-06-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354915
|
7.2 |
HIGH
|
gnu
|
fingerd
|
GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) r…
|
NVD-CWE-Other
|
CVE-1999-1165
|
2016-10-18 11:01 |
1999-07-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354916
|
2.1 |
LOW
|
corel
|
wordperfect
|
Corel Word Perfect 8 for Linux creates a temporary working directory with world-writable permissions, which allows local users to (1) modify Word Perfect behavior by modifying files in the working di…
|
NVD-CWE-Other
|
CVE-1999-1173
|
2016-10-18 11:01 |
1998-12-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354917
|
7.2 |
HIGH
|
aaron_ledbetter jidentd
|
cidentd jidentd
|
Buffer overflow in cidentd ident daemon allows local users to gain root privileges via a long line in the .authlie script.
|
NVD-CWE-Other
|
CVE-1999-1176
|
2016-10-18 11:01 |
1998-01-10 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354918
|
7.2 |
HIGH
|
delix caldera debian lst redhat suse
|
dld openlinux_lite debian_linux lst_power_linux linux suse_linux
|
Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.…
|
NVD-CWE-Other
|
CVE-1999-1182
|
2016-10-18 11:01 |
1997-07-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354919
|
7.2 |
HIGH
|
todd_miller
|
sudo
|
sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-1999-0958
|
2016-10-18 11:00 |
1998-01-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354920
|
6.2 |
MEDIUM
|
hp
|
hp-ux
|
HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creation.
|
NVD-CWE-Other
|
CVE-1999-0961
|
2016-10-18 11:00 |
1996-09-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354921
|
7.2 |
HIGH
|
sco
|
unixware
|
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
|
NVD-CWE-Other
|
CVE-1999-0979
|
2016-10-18 11:00 |
2000-04-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354922
|
5.0 |
MEDIUM
|
netscape
|
communicator
|
Netscape Navigator uses weak encryption for storing a user's Netscape mail password.
|
NVD-CWE-Other
|
CVE-1999-1002
|
2016-10-18 11:00 |
2000-01-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354923
|
5.0 |
MEDIUM
|
netscape novell
|
enterprise_server groupwise
|
Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter.
|
NVD-CWE-Other
|
CVE-1999-1005
|
2016-10-18 11:00 |
1999-12-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354924
|
5.0 |
MEDIUM
|
novell
|
groupwise
|
Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.
|
NVD-CWE-Other
|
CVE-1999-1006
|
2016-10-18 11:00 |
1999-12-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354925
|
7.6 |
HIGH
|
vdonet
|
vdolive_player
|
Buffer overflow in VDO Live Player allows remote attackers to execute commands on the VDO client via a malformed .vdo file.
|
NVD-CWE-Other
|
CVE-1999-1007
|
2016-10-18 11:00 |
1999-12-13 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354926
|
7.2 |
HIGH
|
freebsd mandrakesoft
|
freebsd mandrake_linux
|
xsoldier program allows local users to gain root access via a long argument.
|
NVD-CWE-Other
|
CVE-1999-1008
|
2016-10-18 11:00 |
2000-05-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354927
|
2.1 |
LOW
|
openbsd
|
openssh
|
An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.
|
NVD-CWE-Other
|
CVE-1999-1010
|
2016-10-18 11:00 |
1999-12-14 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354928
|
7.2 |
HIGH
|
ibm
|
aix
|
named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.
|
NVD-CWE-Other
|
CVE-1999-1013
|
2016-10-18 11:00 |
1999-09-23 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354929
|
7.5 |
HIGH
|
seattle_lab_software
|
emurl
|
Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recip…
|
NVD-CWE-Other
|
CVE-1999-1017
|
2016-10-18 11:00 |
1999-07-28 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354930
|
7.5 |
HIGH
|
linux
|
linux_kernel
|
IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragme…
|
NVD-CWE-Other
|
CVE-1999-1018
|
2016-10-18 11:00 |
1999-07-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354931
|
7.2 |
HIGH
|
cabletron
|
spectrum_enterprise_manager
|
SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan ho…
|
NVD-CWE-Other
|
CVE-1999-1019
|
2016-10-18 11:00 |
1999-06-23 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354932
|
7.5 |
HIGH
|
lbl
|
tcpdump
|
ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the pac…
|
NVD-CWE-Other
|
CVE-1999-1024
|
2016-10-18 11:00 |
2001-11-28 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354933
|
7.2 |
HIGH
|
sun
|
solaris
|
aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.
|
NVD-CWE-Other
|
CVE-1999-1026
|
2016-10-18 11:00 |
1996-12-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354934
|
5.0 |
MEDIUM
|
symantec
|
pcanywhere
|
Symantec pcAnywhere 8.0 allows remote attackers to cause a denial of service (CPU utilization) via a large amount of data to port 5631.
|
NVD-CWE-Other
|
CVE-1999-1028
|
2016-10-18 11:00 |
1999-05-28 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354935
|
5.0 |
MEDIUM
|
behold_software
|
web_page_counter
|
counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newline), which causes a malformed entry in the counter log that produces an access…
|
NVD-CWE-Other
|
CVE-1999-1030
|
2016-10-18 11:00 |
1999-05-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354936
|
5.0 |
MEDIUM
|
behold_software
|
web_page_counter
|
counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via a long argument.
|
NVD-CWE-Other
|
CVE-1999-1031
|
2016-10-18 11:00 |
1999-05-19 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354937
|
5.0 |
MEDIUM
|
microsoft
|
outlook_express
|
Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 se…
|
NVD-CWE-Other
|
CVE-1999-1033
|
2016-10-18 11:00 |
1999-05-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354938
|
7.2 |
HIGH
|
cops
|
cops
|
COPS 1.04 allows local users to overwrite or create arbitrary files via a symlink attack on temporary files in (1) res_diff, (2) ca.src, and (3) mail.chk.
|
NVD-CWE-Other
|
CVE-1999-1036
|
2016-10-18 11:00 |
1998-06-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354939
|
7.2 |
HIGH
|
coast
|
satan
|
rex.satan in SATAN 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/rex.$$ file.
|
NVD-CWE-Other
|
CVE-1999-1037
|
2016-10-18 11:00 |
1998-06-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354940
|
7.2 |
HIGH
|
tamu
|
tiger
|
Tiger 2.2.3 allows local users to overwrite arbitrary files via a symlink attack on various temporary files in Tiger's default working directory, as defined by the WORKDIR variable.
|
NVD-CWE-Other
|
CVE-1999-1038
|
2016-10-18 11:00 |
1998-06-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354941
|
7.2 |
HIGH
|
sgi
|
irix
|
Vulnerabilities in (1) ipxchk and (2) ipxlink in NetWare Client 1.0 on IRIX 6.3 and 6.4 allows local users to gain root access via a modified IFS environmental variable.
|
NVD-CWE-Other
|
CVE-1999-1040
|
2016-10-18 11:00 |
1998-04-8 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354942
|
7.2 |
HIGH
|
sco
|
openserver unix
|
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
|
NVD-CWE-Other
|
CVE-1999-1041
|
2016-10-18 11:00 |
1998-08-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354943
|
7.8 |
HIGH
|
realnetworks
|
realserver
|
pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malformed request.
|
NVD-CWE-Other
|
CVE-1999-1045
|
2016-10-18 11:00 |
1998-01-15 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354944
|
7.5 |
HIGH
|
bsdi
|
gauntlet
|
When BSDI patches for Gauntlet 5.0 BSDI are installed in a particular order, Gauntlet allows remote attackers to bypass firewall access restrictions, and does not log the activities.
|
NVD-CWE-Other
|
CVE-1999-1047
|
2016-10-18 11:00 |
1999-10-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354945
|
5.0 |
MEDIUM
|
microsoft
|
frontpage
|
Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which allows remote attackers to read possibl…
|
NVD-CWE-Other
|
CVE-1999-1052
|
2016-10-18 11:00 |
1999-08-24 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354946
|
5.0 |
MEDIUM
|
globetrotter
|
flexlm
|
The default configuration of FLEXlm license manager 6.0d, and possibly other versions, allows remote attackers to shut down the server via the lmdown command.
|
NVD-CWE-Other
|
CVE-1999-1054
|
2016-10-18 11:00 |
1998-09-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354947
|
5.0 |
MEDIUM
|
tetrix
|
tetrinet
|
Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by connecting to port 31457 from a host with a long DNS …
|
NVD-CWE-Other
|
CVE-1999-1060
|
2016-10-18 11:00 |
1999-02-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354948
|
10.0 |
HIGH
|
windowmaker
|
windowmaker
|
Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (ar…
|
NVD-CWE-Other
|
CVE-1999-1064
|
2016-10-18 11:00 |
1999-08-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354949
|
7.5 |
HIGH
|
palm_pilot
|
hotsync_manager
|
Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 14238 while the manager is in n…
|
NVD-CWE-Other
|
CVE-1999-1065
|
2016-10-18 11:00 |
1999-11-4 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
354950
|
5.0 |
MEDIUM
|
sgi
|
quake_1_server
|
Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a "Smurf" style attack on another …
|
NVD-CWE-Other
|
CVE-1999-1066
|
2016-10-18 11:00 |
1999-12-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|