Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 024

Количество 307 024

nvd логотип

CVE-1999-1543

около 26 лет назад

MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1542

почти 26 лет назад

RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1541

почти 26 лет назад

shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1540

почти 26 лет назад

shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1539

почти 26 лет назад

Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1538

больше 26 лет назад

When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.

CVSS2: 2.1
EPSS: Средний
nvd логотип

CVE-1999-1537

около 26 лет назад

IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1536

около 26 лет назад

.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1535

около 26 лет назад

Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument in the HTTP request.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1534

почти 26 лет назад

Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root access via a long HOME environmental variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1533

почти 26 лет назад

Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password argument to the login.htm file in its HTTP service.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1532

почти 26 лет назад

Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1531

почти 26 лет назад

Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a viewer's system via a long IMG_SRC HTML tag.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1530

почти 26 лет назад

cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-1999-1529

почти 26 лет назад

A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may allow an attacker to execute arbitrary code.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1528

почти 26 лет назад

ProSoft Netware Client 5.12 on Macintosh MacOS 9 does not automatically log a user out of the NDS tree when the user logs off the system, which allows other users of the same system access to the unprotected NDS session.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1527

почти 26 лет назад

Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1526

больше 26 лет назад

Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1525

больше 28 лет назад

Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-1999-1524

около 26 лет назад

FlowPoint DSL router firmware versions prior to 3.0.8 allows a remote attacker to exploit a password recovery feature from the network and conduct brute force password guessing, instead of limiting the feature to the serial console port.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1543

MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.

CVSS2: 4.6
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1542

RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.

CVSS2: 10
2%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1541

shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file.

CVSS2: 7.2
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1540

shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.

CVSS2: 2.1
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1539

Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password.

CVSS2: 7.5
15%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1538

When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.

CVSS2: 2.1
57%
Средний
больше 26 лет назад
nvd логотип
CVE-1999-1537

IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.

CVSS2: 5
1%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1536

.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.

CVSS2: 7.2
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1535

Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument in the HTTP request.

CVSS2: 10
2%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1534

Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root access via a long HOME environmental variable.

CVSS2: 7.2
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1533

Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password argument to the login.htm file in its HTTP service.

CVSS2: 7.5
9%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1532

Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands.

CVSS2: 5
4%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1531

Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a viewer's system via a long IMG_SRC HTML tag.

CVSS2: 7.5
4%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1530

cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.

CVSS2: 3.6
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1529

A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may allow an attacker to execute arbitrary code.

CVSS2: 7.5
15%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1528

ProSoft Netware Client 5.12 on Macintosh MacOS 9 does not automatically log a user out of the NDS tree when the user logs off the system, which allows other users of the same system access to the unprotected NDS session.

CVSS2: 4.6
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1527

Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server.

CVSS2: 7.5
1%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1526

Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia.

CVSS2: 5
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1525

Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie.

CVSS2: 5.1
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1524

FlowPoint DSL router firmware versions prior to 3.0.8 allows a remote attacker to exploit a password recovery feature from the network and conduct brute force password guessing, instead of limiting the feature to the serial console port.

CVSS2: 5
1%
Низкий
около 26 лет назад

Уязвимостей на страницу