Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 703

Количество 331 703

nvd логотип

CVE-1999-1142

больше 33 лет назад

SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1141

больше 28 лет назад

Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1140

около 28 лет назад

Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1139

больше 28 лет назад

Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1138

больше 32 лет назад

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1137

больше 32 лет назад

The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1136

больше 27 лет назад

Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1135

почти 32 года назад

Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1134

больше 31 года назад

Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHSS_4066.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1133

больше 28 лет назад

HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1132

около 26 лет назад

Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1131

больше 28 лет назад

Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1130

больше 26 лет назад

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1129

больше 26 лет назад

Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1128

почти 29 лет назад

Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-1999-1127

около 26 лет назад

Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1126

около 26 лет назад

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1125

больше 28 лет назад

Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1124

около 26 лет назад

HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1123

больше 34 лет назад

The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1142

SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.

CVSS2: 7.2
0%
Низкий
больше 33 лет назад
nvd логотип
CVE-1999-1141

Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.

CVSS2: 7.5
1%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1140

Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.

CVSS2: 7.2
0%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1139

Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.

CVSS2: 7.2
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1138

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

CVSS2: 10
1%
Низкий
больше 32 лет назад
nvd логотип
CVE-1999-1137

The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.

CVSS2: 2.1
0%
Низкий
больше 32 лет назад
nvd логотип
CVE-1999-1136

Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.

CVSS2: 4.6
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1135

Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.

CVSS2: 7.2
0%
Низкий
почти 32 года назад
nvd логотип
CVE-1999-1134

Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHSS_4066.

CVSS2: 7.2
0%
Низкий
больше 31 года назад
nvd логотип
CVE-1999-1133

HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.

CVSS2: 4.6
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1132

Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.

CVSS2: 5
19%
Средний
около 26 лет назад
nvd логотип
CVE-1999-1131

Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

CVSS2: 5
1%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1130

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.

CVSS2: 5
7%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1129

Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag.

CVSS2: 7.5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1128

Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.

CVSS2: 5.1
6%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1127

Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.

CVSS3: 7.5
30%
Средний
около 26 лет назад
nvd логотип
CVE-1999-1126

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

CVSS2: 2.1
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1125

Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.

CVSS2: 10
1%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1124

HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.

CVSS2: 7.5
0%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1123

The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.

CVSS2: 7.2
1%
Низкий
больше 34 лет назад

Уязвимостей на страницу