Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 330 660

Количество 330 660

nvd логотип

CVE-1999-1359

около 26 лет назад

When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1358

около 26 лет назад

When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1357

больше 26 лет назад

Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1356

больше 26 лет назад

Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1355

около 26 лет назад

BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1354

больше 26 лет назад

E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1353

больше 26 лет назад

Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1352

больше 26 лет назад

mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1351

больше 26 лет назад

Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC GET request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1350

больше 26 лет назад

ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1349

больше 26 лет назад

NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1348

больше 26 лет назад

Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1347

больше 26 лет назад

Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1346

больше 26 лет назад

PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1345

больше 26 лет назад

Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in the directory, and (2) view files that are being transferred.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1344

больше 26 лет назад

Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1343

больше 26 лет назад

HTTP server for Xerox DocuColor 4 LP allows remote attackers to cause a denial of service (hang) via a long URL that contains a large number of . characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1342

больше 26 лет назад

ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1341

больше 26 лет назад

Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1340

больше 26 лет назад

Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1359

When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.

CVSS2: 7.5
7%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1358

When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.

CVSS2: 4.6
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1357

Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters.

CVSS2: 7.5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1356

Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1355

BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.

CVSS2: 7.5
1%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1354

E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1353

Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1352

mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1351

Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC GET request.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1350

ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1349

NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1348

Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.

CVSS2: 2.1
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1347

Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1346

PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file.

CVSS2: 7.5
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1345

Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in the directory, and (2) view files that are being transferred.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1344

Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file.

CVSS2: 7.5
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1343

HTTP server for Xerox DocuColor 4 LP allows remote attackers to cause a denial of service (hang) via a long URL that contains a large number of . characters.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1342

ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1341

Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices.

CVSS2: 4.6
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1340

Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument.

CVSS2: 7.2
0%
Низкий
больше 26 лет назад

Уязвимостей на страницу