Количество 298 690
Количество 298 690

CVE-1999-0668
The scriptlet.typelib ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy.

CVE-1999-0667
The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denial of service.

CVE-1999-0665
An application-critical Windows NT registry key has an inappropriate value.

CVE-1999-0664
An application-critical Windows NT registry key has inappropriate permissions.

CVE-1999-0663
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.

CVE-1999-0662
A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete.

CVE-1999-0661
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6.

CVE-1999-0660
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE. It might be more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A hacker utility, back door, or Trojan Horse is installed on a system, e.g. NetBus, Back Orifice, Rootkit, etc.

CVE-1999-0659
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A Windows NT Primary Domain Controller (PDC) or Backup Domain Controller (BDC) is present.

CVE-1999-0658
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "DCOM is running.

CVE-1999-0657
WinGate is being used.

CVE-1999-0656
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.

CVE-1999-0655
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE. Notes: the former description is: "A service may include useful information in its banner or help function (such as the name and version), making it useful for information gathering activities.

CVE-1999-0654
The OS/2 or POSIX subsystem in NT is enabled.

CVE-1999-0653
A component service related to NIS+ is running.

CVE-1999-0652
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A database service is running, e.g. a SQL server, Oracle, or mySQL.

CVE-1999-0651
The rsh/rlogin service is running.

CVE-1999-0650
The netstat service is running, which provides sensitive information to remote attackers.

CVE-1999-0649
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The FSP service is running.

CVE-1999-0648
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The X25 service is running.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-1999-0668 The scriptlet.typelib ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy. | CVSS2: 5.1 | 15% Средний | почти 26 лет назад |
![]() | CVE-1999-0667 The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denial of service. | CVSS2: 10 | 44% Средний | почти 28 лет назад |
![]() | CVE-1999-0665 An application-critical Windows NT registry key has an inappropriate value. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0664 An application-critical Windows NT registry key has inappropriate permissions. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0663 A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0662 A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0661 A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6. | CVSS2: 10 | 10% Низкий | больше 26 лет назад |
![]() | CVE-1999-0660 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE. It might be more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A hacker utility, back door, or Trojan Horse is installed on a system, e.g. NetBus, Back Orifice, Rootkit, etc. | больше 26 лет назад | ||
![]() | CVE-1999-0659 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A Windows NT Primary Domain Controller (PDC) or Backup Domain Controller (BDC) is present. | больше 26 лет назад | ||
![]() | CVE-1999-0658 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "DCOM is running. | больше 26 лет назад | ||
![]() | CVE-1999-0657 WinGate is being used. | 1% Низкий | больше 26 лет назад | |
![]() | CVE-1999-0656 The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names. | CVSS2: 5 | 1% Низкий | больше 26 лет назад |
![]() | CVE-1999-0655 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is not about any specific product, protocol, or design, so it is out of scope of CVE. Notes: the former description is: "A service may include useful information in its banner or help function (such as the name and version), making it useful for information gathering activities. | больше 26 лет назад | ||
![]() | CVE-1999-0654 The OS/2 or POSIX subsystem in NT is enabled. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0653 A component service related to NIS+ is running. | CVSS2: 10 | 0% Низкий | больше 26 лет назад |
![]() | CVE-1999-0652 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A database service is running, e.g. a SQL server, Oracle, or mySQL. | больше 26 лет назад | ||
![]() | CVE-1999-0651 The rsh/rlogin service is running. | CVSS2: 7.5 | 47% Средний | больше 26 лет назад |
![]() | CVE-1999-0650 The netstat service is running, which provides sensitive information to remote attackers. | CVSS2: 5 | 1% Низкий | больше 26 лет назад |
![]() | CVE-1999-0649 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The FSP service is running. | больше 26 лет назад | ||
![]() | CVE-1999-0648 Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "The X25 service is running. | больше 26 лет назад |
Уязвимостей на страницу