Количество 316 770
Количество 316 770
CVE-1999-0491
The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name of the command to execute.
CVE-1999-0490
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG SRC tag.
CVE-1999-0489
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scripted paste" as described in MS:MS98-013.
CVE-1999-0488
Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.
CVE-1999-0487
The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files.
CVE-1999-0486
Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, potentially causing a system crash.
CVE-1999-0485
Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.
CVE-1999-0484
Buffer overflow in OpenBSD ping.
CVE-1999-0483
OpenBSD crash using nlink value in FFS and EXT2FS filesystems.
CVE-1999-0482
OpenBSD kernel crash through TSS handling, as caused by the crashme program.
CVE-1999-0481
Denial of service in "poll" in OpenBSD.
CVE-1999-0480
Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack.
CVE-1999-0479
Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.
CVE-1999-0478
Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
CVE-1999-0477
The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly.
CVE-1999-0476
A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user.
CVE-1999-0475
A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the user who is running procmail.
CVE-1999-0474
The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.
CVE-1999-0473
The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred.
CVE-1999-0472
The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-1999-0491 The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name of the command to execute. | CVSS2: 4.6 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0490 MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG SRC tag. | CVSS2: 7.5 | 5% Низкий | больше 26 лет назад | |
CVE-1999-0489 MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scripted paste" as described in MS:MS98-013. | CVSS2: 10 | 17% Средний | больше 26 лет назад | |
CVE-1999-0488 Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability. | CVSS2: 7.5 | 3% Низкий | больше 26 лет назад | |
CVE-1999-0487 The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files. | CVSS2: 2.6 | 21% Средний | больше 26 лет назад | |
CVE-1999-0486 Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, potentially causing a system crash. | CVSS2: 5 | 1% Низкий | почти 28 лет назад | |
CVE-1999-0485 Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD. | CVSS2: 2.6 | 1% Низкий | больше 26 лет назад | |
CVE-1999-0484 Buffer overflow in OpenBSD ping. | CVSS2: 2.1 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0483 OpenBSD crash using nlink value in FFS and EXT2FS filesystems. | CVSS2: 2.1 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0482 OpenBSD kernel crash through TSS handling, as caused by the crashme program. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-1999-0481 Denial of service in "poll" in OpenBSD. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-1999-0480 Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack. | CVSS2: 2.1 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0479 Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-1999-0478 Denial of service in HP-UX sendmail 8.8.6 related to accepting connections. | CVSS2: 5 | 1% Низкий | почти 27 лет назад | |
CVE-1999-0477 The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly. | CVSS2: 7.5 | 7% Низкий | почти 26 лет назад | |
CVE-1999-0476 A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user. | CVSS2: 7.2 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0475 A race condition in how procmail handles .procmailrc files allows a local user to read arbitrary files available to the user who is running procmail. | CVSS2: 1.2 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0474 The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory. | CVSS2: 5 | 1% Низкий | больше 26 лет назад | |
CVE-1999-0473 The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred. | CVSS2: 2.1 | 0% Низкий | больше 26 лет назад | |
CVE-1999-0472 The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it. | CVSS2: 5 | 1% Низкий | больше 26 лет назад |
Уязвимостей на страницу