CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 93694 CVEs

CVE ID Severity Description EPSS Published
N/A

The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.

0.1% 1999-01-02
N/A

IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.

0.0% 1999-01-02
N/A

wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.

0.5% 1999-01-02
7.5 HIGH

Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a long PORT command.

1.4% 1999-01-01
N/A

Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.

0.7% 1999-01-01
N/A

PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.

0.1% 1999-01-01
N/A

Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.

0.5% 1999-01-01
N/A

An application-critical Windows NT registry key has an inappropriate value.

0.5% 1999-01-01
N/A

An application-critical Windows NT registry key has inappropriate permissions.

0.4% 1999-01-01
N/A

A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.

0.5% 1999-01-01
N/A

A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete.

0.5% 1999-01-01
N/A

A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6.

6.4% 1999-01-01
N/A

WinGate is being used.

0.6% 1999-01-01
N/A

The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.

0.2% 1999-01-01
N/A

The OS/2 or POSIX subsystem in NT is enabled.

0.5% 1999-01-01
N/A

A component service related to NIS+ is running.

0.5% 1999-01-01
N/A

The rsh/rlogin service is running.

50.1% 1999-01-01
N/A

The netstat service is running, which provides sensitive information to remote attackers.

0.6% 1999-01-01
N/A

The UUCP service is running.

0.6% 1999-01-01
N/A

The Gopher service is running.

0.5% 1999-01-01
N/A

The chargen service is running.

0.9% 1999-01-01
N/A

The daytime service is running.

0.6% 1999-01-01
N/A

The systat service is running.

0.6% 1999-01-01
N/A

The discard service is running.

0.5% 1999-01-01
N/A

The echo service is running.

0.8% 1999-01-01
N/A

The RPC portmapper service is running.

0.9% 1999-01-01
N/A

The NT Alerter and Messenger services are running.

0.5% 1999-01-01
N/A

The ident/identd service is running.

0.6% 1999-01-01
N/A

The rpc.rquotad service is running.

0.6% 1999-01-01
N/A

The rstat/rstatd service is running.

0.6% 1999-01-01
N/A

The rexec service is running.

0.5% 1999-01-01
N/A

The rpc.sprayd service is running.

0.6% 1999-01-01
N/A

A system-critical Windows NT registry key has an inappropriate value.

0.5% 1999-01-01
N/A

In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System Operators, etc.

0.5% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly reassemble fragmented packets.

0.5% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.

0.5% 1999-01-01
N/A

A network intrusion detection system (IDS) does not verify the checksum on a packet.

0.5% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle packets with improper sequence numbers.

0.5% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle packets that are sent out of order, allowing an attacker to escape detection.

0.5% 1999-01-01
N/A

A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.

1.3% 1999-01-01
N/A

A Windows NT log file has an inappropriate maximum size or retention period.

0.5% 1999-01-01
N/A

A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.

0.5% 1999-01-01
N/A

The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.

0.5% 1999-01-01
N/A

The Logon box of a Windows NT system displays the name of the last user who logged in.

0.5% 1999-01-01
N/A

An event log in Windows NT has inappropriate access permissions.

0.4% 1999-01-01
N/A

A system-critical Windows NT registry key has inappropriate permissions.

0.4% 1999-01-01
N/A

A filter in a router or firewall allows unusual fragmented packets.

0.5% 1999-01-01
N/A

A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data.

0.5% 1999-01-01
N/A

A network service is running on a nonstandard port.

0.6% 1999-01-01
N/A

A Windows NT file system is not NTFS.

0.5% 1999-01-01