Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 314 676

Количество 314 676

nvd логотип

CVE-1999-1555

больше 27 лет назад

Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FULL CONTROL" permissions, which allows local users to cause Inoculan's antivirus update feature to install a Trojan horse dll.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1554

почти 35 лет назад

/usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail, which allows local users to read the mail of other users.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1553

больше 26 лет назад

Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long subject line.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1552

больше 31 года назад

dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1551

больше 26 лет назад

Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1550

почти 26 лет назад

bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the "file" parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1549

почти 26 лет назад

Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the user's configuration file and execute commands.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-1999-1548

почти 26 лет назад

Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceeding that limit.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1547

почти 26 лет назад

Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1546

больше 26 лет назад

netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1545

больше 26 лет назад

Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1544

больше 26 лет назад

Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1543

больше 26 лет назад

MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1542

около 26 лет назад

RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1541

около 26 лет назад

shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1540

около 26 лет назад

shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1539

почти 26 лет назад

Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1538

почти 27 лет назад

When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.

CVSS2: 2.1
EPSS: Средний
nvd логотип

CVE-1999-1537

больше 26 лет назад

IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1536

около 26 лет назад

.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1555

Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FULL CONTROL" permissions, which allows local users to cause Inoculan's antivirus update feature to install a Trojan horse dll.

CVSS2: 7.2
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1554

/usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail, which allows local users to read the mail of other users.

CVSS2: 2.1
1%
Низкий
почти 35 лет назад
nvd логотип
CVE-1999-1553

Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long subject line.

CVSS2: 10
5%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1552

dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.

CVSS2: 7.2
0%
Низкий
больше 31 года назад
nvd логотип
CVE-1999-1551

Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL.

CVSS2: 5
43%
Средний
больше 26 лет назад
nvd логотип
CVE-1999-1550

bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the "file" parameter.

CVSS2: 5
7%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1549

Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the user's configuration file and execute commands.

CVSS3: 7.8
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1548

Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceeding that limit.

CVSS2: 5
0%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1547

Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent.

CVSS2: 7.5
1%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1546

netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1545

Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.

CVSS2: 2.1
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1544

Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.

CVSS2: 5
7%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1543

MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1542

RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.

CVSS2: 10
2%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1541

shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file.

CVSS2: 7.2
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1540

shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.

CVSS2: 2.1
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1539

Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password.

CVSS2: 7.5
15%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1538

When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.

CVSS2: 2.1
57%
Средний
почти 27 лет назад
nvd логотип
CVE-1999-1537

IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1536

.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.

CVSS2: 7.2
0%
Низкий
около 26 лет назад

Уязвимостей на страницу