CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 93694 CVEs

CVE ID Severity Description EPSS Published
N/A

Netmanager Chameleon SMTPd has several buffer overflows that cause a crash.

1.1% 1999-03-01
N/A

Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry.

0.1% 1999-03-01
N/A

Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL.

0.5% 1999-03-01
N/A

Denial of service of Ascend routers through port 150 (remote administration).

0.5% 1999-03-01
N/A

super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access.

0.5% 1999-02-26
N/A

OpenBSD crash using nlink value in FFS and EXT2FS filesystems.

0.1% 1999-02-25
N/A

Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.

0.5% 1999-02-25
N/A

SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user's Finger File to point to the target file, then running finger on the user.

0.1% 1999-02-25
N/A

Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.

0.1% 1999-02-24
N/A

Buffer overflow in OpenBSD ping.

0.1% 1999-02-23
N/A

Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service.

4.0% 1999-02-22
N/A

Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripting.

8.9% 1999-02-22
N/A

InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands.

0.6% 1999-02-22
N/A

Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services.

0.7% 1999-02-22
N/A

ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

0.5% 1999-02-21
N/A

install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change the permissions of arbitrary files via a symlink attack on a temporary file.

0.0% 1999-02-20
N/A

Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.

0.5% 1999-02-20
N/A

SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes.

0.1% 1999-02-19
N/A

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

0.1% 1999-02-19
N/A

Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter.

0.4% 1999-02-19
N/A

Kabsoftware Lydia utility uses weak encryption to store user passwords in the lydia.ini file, which allows local users to easily decrypt the passwords and gain privileges.

0.0% 1999-02-19
N/A

Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.

0.7% 1999-02-19
N/A

Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.

0.4% 1999-02-19
N/A

In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.

27.1% 1999-02-19
N/A

Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege.

0.0% 1999-02-19
N/A

Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.

0.1% 1999-02-18
N/A

xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file.

0.1% 1999-02-18
N/A

A buffer overflow in lsof allows local users to obtain root privilege.

0.4% 1999-02-18
N/A

snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.

7.5% 1999-02-17
N/A

Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by connecting to port 31457 from a host with a long DNS hostname.

3.1% 1999-02-17
N/A

A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial of service.

0.7% 1999-02-17
N/A

O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.

1.6% 1999-02-16
N/A

Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands.

1.0% 1999-02-16
N/A

Debian GNU/Linux cfengine package is susceptible to a symlink attack.

0.1% 1999-02-16
N/A

mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database names, and server version via the ServerStats query.

0.6% 1999-02-15
N/A

Vulnerability in Compaq Tru64 UNIX edauth command.

0.1% 1999-02-15
N/A

Buffer overflow in the Mail-Max SMTP server for Windows systems allows remote command execution.

4.0% 1999-02-14
N/A

Multilink PPP for ISDN dialup users in Ascend before 4.6 allows remote attackers to cause a denial of service via a spoofed endpoint identifier.

0.7% 1999-02-12
N/A

The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted.

6.3% 1999-02-12
N/A

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.

74.0% 1999-02-11
N/A

Lynx allows a local user to overwrite sensitive files through /tmp symlinks.

0.1% 1999-02-11
N/A

In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.

0.1% 1999-02-10
N/A

rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory.

0.3% 1999-02-10
N/A

By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.

29.6% 1999-02-09
N/A

Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.

48.3% 1999-02-09
N/A

NetBSD netstat command allows local users to access kernel memory.

0.1% 1999-02-09
N/A

In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash value.

5.7% 1999-02-08
N/A

Race condition in the db_loader program in ClearCase gives local users root access by setting SUID bits.

0.4% 1999-02-08
N/A

Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.

19.1% 1999-02-06
N/A

nobo 1.2 allows remote attackers to cause a denial of service (crash) via a series of large UDP packets.

0.8% 1999-02-04