Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 329 612

Количество 329 612

nvd логотип

CVE-1999-1391

больше 35 лет назад

Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combination of the npd program and weak directory permissions.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1390

почти 28 лет назад

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1389

больше 27 лет назад

US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set host prompt" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the "host: " prompt.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1388

больше 31 года назад

passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1387

почти 29 лет назад

Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1386

около 26 лет назад

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-1999-1385

около 29 лет назад

Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1384

больше 29 лет назад

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1383

больше 29 лет назад

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1382

около 26 лет назад

NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1381

больше 27 лет назад

Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1380

почти 29 лет назад

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-1999-1379

около 26 лет назад

DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source address, which produces more traffic to the victim than was sent by the attacker.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1378

больше 26 лет назад

dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1377

больше 26 лет назад

Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1376

около 27 лет назад

Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-1999-1375

почти 27 лет назад

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-1999-1374

почти 21 год назад

perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1373

около 21 года назад

FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1372

почти 27 лет назад

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1391

Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combination of the npd program and weak directory permissions.

CVSS2: 7.2
0%
Низкий
больше 35 лет назад
nvd логотип
CVE-1999-1390

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

CVSS2: 7.2
0%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1389

US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set host prompt" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the "host: " prompt.

CVSS2: 7.5
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1388

passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.

CVSS2: 6.2
0%
Низкий
больше 31 года назад
nvd логотип
CVE-1999-1387

Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.

CVSS2: 5
10%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1386

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

CVSS3: 5.5
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1385

Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

CVSS2: 7.2
0%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1384

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.

CVSS2: 7.2
1%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1383

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

CVSS2: 4.6
0%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1382

NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.

CVSS2: 7.2
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1381

Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1380

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.

CVSS2: 5.1
1%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1379

DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source address, which produces more traffic to the victim than was sent by the attacker.

CVSS2: 5
1%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1378

dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1377

Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1376

Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.

CVSS2: 10
47%
Средний
около 27 лет назад
nvd логотип
CVE-1999-1375

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.

CVSS2: 5
74%
Высокий
почти 27 лет назад
nvd логотип
CVE-1999-1374

perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.

CVSS2: 5
1%
Низкий
почти 21 год назад
nvd логотип
CVE-1999-1373

FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-1999-1372

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
почти 27 лет назад

Уязвимостей на страницу