CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 198131 CVEs

CVE ID Severity Description EPSS Published
N/A

The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.

1.6% 1999-01-01
N/A

The OS/2 or POSIX subsystem in NT is enabled.

1.9% 1999-01-01
N/A

A component service related to NIS+ is running.

1.9% 1999-01-01
N/A

The rsh/rlogin service is running.

11.9% 1999-01-01
N/A

The netstat service is running, which provides sensitive information to remote attackers.

1.9% 1999-01-01
N/A

The UUCP service is running.

1.3% 1999-01-01
N/A

The Gopher service is running.

1.9% 1999-01-01
N/A

The chargen service is running.

1.3% 1999-01-01
N/A

The daytime service is running.

1.3% 1999-01-01
N/A

The systat service is running.

1.4% 1999-01-01
N/A

The discard service is running.

1.9% 1999-01-01
N/A

The echo service is running.

1.3% 1999-01-01
7.3 HIGH

The RPC portmapper service is running.

1.0% 1999-01-01
N/A

The NT Alerter and Messenger services are running.

1.9% 1999-01-01
N/A

The ident/identd service is running.

1.3% 1999-01-01
N/A

The rpc.rquotad service is running.

1.3% 1999-01-01
N/A

The rstat/rstatd service is running.

1.3% 1999-01-01
N/A

The rexec service is running.

1.9% 1999-01-01
N/A

The rpc.sprayd service is running.

1.3% 1999-01-01
N/A

A system-critical Windows NT registry key has an inappropriate value.

2.0% 1999-01-01
N/A

In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System Operators, etc.

1.9% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly reassemble fragmented packets.

1.9% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.

1.9% 1999-01-01
N/A

A network intrusion detection system (IDS) does not verify the checksum on a packet.

1.9% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle packets with improper sequence numbers.

1.9% 1999-01-01
N/A

A network intrusion detection system (IDS) does not properly handle packets that are sent out of order, allowing an attacker to escape detection.

1.9% 1999-01-01
N/A

A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.

3.1% 1999-01-01
N/A

A Windows NT log file has an inappropriate maximum size or retention period.

1.9% 1999-01-01
N/A

A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.

1.9% 1999-01-01
N/A

The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.

2.3% 1999-01-01
N/A

The Logon box of a Windows NT system displays the name of the last user who logged in.

1.9% 1999-01-01
N/A

An event log in Windows NT has inappropriate access permissions.

1.9% 1999-01-01
N/A

A system-critical Windows NT registry key has inappropriate permissions.

2.0% 1999-01-01
N/A

A filter in a router or firewall allows unusual fragmented packets.

1.5% 1999-01-01
N/A

A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data.

1.9% 1999-01-01
N/A

A network service is running on a nonstandard port.

1.3% 1999-01-01
N/A

A Windows NT file system is not NTFS.

1.9% 1999-01-01
N/A

There is a one-way or two-way trust relationship between Windows NT domains.

1.9% 1999-01-01
N/A

The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions.

6.7% 1999-01-01
N/A

The HKEY_LOCAL_MACHINE key in a Windows NT system has inappropriate, system-critical permissions.

1.9% 1999-01-01
N/A

A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys.

6.1% 1999-01-01
N/A

A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.

1.5% 1999-01-01
N/A

A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories.

6.1% 1999-01-01
N/A

A router's configuration service or management interface (such as a web server or telnet) is configured to allow connections from arbitrary hosts.

1.9% 1999-01-01
N/A

Windows NT is not using a password filter utility, e.g. PASSFILT.DLL.

6.0% 1999-01-01
N/A

A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file.

2.0% 1999-01-01
N/A

rpc.admind in Solaris is not running in a secure mode.

1.8% 1999-01-01
N/A

A Sendmail alias allows input to be piped to a program.

1.9% 1999-01-01
N/A

An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to become disabled.

1.8% 1999-01-01
N/A

IIS has the #exec function enabled for Server Side Include (SSI) files.

7.6% 1999-01-01