Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 314 639

Количество 314 639

nvd логотип

CVE-1999-1238

около 31 года назад

Vulnerability in CORE-DIAG fileset in HP message catalog in HP-UX 9.05 and earlier allows local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1237

больше 26 лет назад

Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1236

около 26 лет назад

Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1235

около 26 лет назад

Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1234

почти 26 лет назад

LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a call to (1) SamrOpenDomain, (2) SamrEnumDomainUsers, and (3) SamrQueryDomainInfo.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1233

почти 26 лет назад

IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does not resolve to a DNS domain, aka the "Domain Resolution" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1232

больше 28 лет назад

Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1231

больше 26 лет назад

ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once, which allows remote attackers to determine user account names on the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1230

почти 28 лет назад

Quake 2 server allows remote attackers to cause a denial of service via a spoofed UDP packet with a source address of 127.0.0.1, which causes the server to attempt to connect to itself.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1229

больше 27 лет назад

Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allows local users to read arbitrary files via a symlink from config.cfg to the target file.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1228

около 27 лет назад

Various modems that do not implement a guard time, or are configured with a guard time of 0, can allow remote attackers to execute arbitrary modem commands such as ATH, ATH0, etc., via a "+++" sequence that appears in ICMP packets, the subject of an e-mail message, IRC commands, and others.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1227

около 26 лет назад

Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1226

почти 26 лет назад

Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-1999-1225

около 28 лет назад

rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1224

около 28 лет назад

IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-1999-1223

почти 26 лет назад

IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a large number of / (forward slash) characters.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1222

почти 26 лет назад

Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1221

почти 29 лет назад

dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1220

около 28 лет назад

Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1219

около 31 года назад

Vulnerability in sgihelp in the SGI help system and print manager in IRIX 5.2 and earlier allows local users to gain root privileges, possibly through the clogin command.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1238

Vulnerability in CORE-DIAG fileset in HP message catalog in HP-UX 9.05 and earlier allows local users to gain privileges.

CVSS2: 4.6
0%
Низкий
около 31 года назад
nvd логотип
CVE-1999-1237

Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods.

CVSS2: 10
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1236

Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf.

CVSS2: 4.6
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1235

Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.

CVSS2: 4.6
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1234

LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a call to (1) SamrOpenDomain, (2) SamrEnumDomainUsers, and (3) SamrQueryDomainInfo.

CVSS2: 5
15%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1233

IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does not resolve to a DNS domain, aka the "Domain Resolution" vulnerability.

CVSS2: 7.5
10%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1232

Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.

CVSS2: 7.2
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1231

ssh 2.0.12, and possibly other versions, allows valid user names to attempt to enter the correct password multiple times, but only prompts an invalid user name for a password once, which allows remote attackers to determine user account names on the server.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1230

Quake 2 server allows remote attackers to cause a denial of service via a spoofed UDP packet with a source address of 127.0.0.1, which causes the server to attempt to connect to itself.

CVSS2: 5
1%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1229

Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allows local users to read arbitrary files via a symlink from config.cfg to the target file.

CVSS2: 2.1
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1228

Various modems that do not implement a guard time, or are configured with a guard time of 0, can allow remote attackers to execute arbitrary modem commands such as ATH, ATH0, etc., via a "+++" sequence that appears in ICMP packets, the subject of an e-mail message, IRC commands, and others.

CVSS2: 7.5
1%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1227

Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file.

CVSS2: 7.2
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1226

Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key.

CVSS2: 2.6
1%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1225

rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not.

CVSS2: 5
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1224

IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.

CVSS2: 3.6
0%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1223

IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a large number of / (forward slash) characters.

CVSS2: 5
16%
Средний
почти 26 лет назад
nvd логотип
CVE-1999-1222

Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup.

CVSS2: 5
10%
Низкий
почти 26 лет назад
nvd логотип
CVE-1999-1221

dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.

CVSS2: 2.1
0%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1220

Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header.

CVSS2: 7.5
2%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1219

Vulnerability in sgihelp in the SGI help system and print manager in IRIX 5.2 and earlier allows local users to gain root privileges, possibly through the clogin command.

CVSS2: 7.2
0%
Низкий
около 31 года назад

Уязвимостей на страницу