Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 362 810

Количество 362 810

nvd логотип

CVE-1999-1449

около 29 лет назад

SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1448

около 28 лет назад

Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mail message with certain dates, such as (1) dates before 1970, which cause a Divide By Zero error, or (2) dates that are 100 years after the current date, which causes a segmentation fault.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1447

около 28 лет назад

Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1446

почти 29 лет назад

Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the "Clear History" option, and are not visible when the user browses the folders because of tailored displays.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1445

больше 28 лет назад

Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1444

больше 26 лет назад

genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1443

около 28 лет назад

Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass the desktop protection by (1) using <CTRL><ALT><DEL> and kill the process using the task manager, (2) booting the system from a separate disk, or (3) interrupting certain processes that execute while the system is booting.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1442

около 28 лет назад

Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a particular sequence of instructions, possibly related to accessing addresses outside of segments.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1441

около 28 лет назад

Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users to cause a denial of service by sending SIGIO to processes that do not catch it.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1440

больше 27 лет назад

Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-1999-1439

больше 28 лет назад

gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1438

больше 35 лет назад

Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command line arguments.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1437

около 28 лет назад

ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1436

около 28 лет назад

Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "user" parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1435

около 28 лет назад

Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmental variables.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1434

около 28 лет назад

login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1433

около 28 лет назад

HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on the /tmp/jetadmin.log file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1432

около 28 лет назад

Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1431

больше 21 года назад

ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1430

больше 27 лет назад

PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.

CVSS2: 2.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1449

SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.

CVSS2: 2.1
0%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1448

Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mail message with certain dates, such as (1) dates before 1970, which cause a Divide By Zero error, or (2) dates that are 100 years after the current date, which causes a segmentation fault.

CVSS2: 5
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1447

Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag.

CVSS2: 5
13%
Средний
около 28 лет назад
nvd логотип
CVE-1999-1446

Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the "Clear History" option, and are not visible when the user browses the folders because of tailored displays.

CVSS2: 2.1
2%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1445

Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.

CVSS2: 5
1%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1444

genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1443

Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass the desktop protection by (1) using <CTRL><ALT><DEL> and kill the process using the task manager, (2) booting the system from a separate disk, or (3) interrupting certain processes that execute while the system is booting.

CVSS2: 4.6
0%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1442

Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a particular sequence of instructions, possibly related to accessing addresses outside of segments.

CVSS2: 7.2
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1441

Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users to cause a denial of service by sending SIGIO to processes that do not catch it.

CVSS2: 2.1
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1440

Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.

CVSS2: 5.1
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1439

gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.

CVSS2: 2.1
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1438

Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command line arguments.

CVSS2: 7.2
0%
Низкий
больше 35 лет назад
nvd логотип
CVE-1999-1437

ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.

CVSS2: 7.5
3%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1436

Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "user" parameter.

CVSS2: 7.5
3%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1435

Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmental variables.

CVSS2: 7.2
0%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1434

login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.

CVSS2: 7.2
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1433

HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on the /tmp/jetadmin.log file.

CVSS2: 7.2
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1432

Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.

CVSS2: 7.5
2%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1431

ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe.

CVSS2: 4.6
10%
Низкий
больше 21 года назад
nvd логотип
CVE-1999-1430

PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.

CVSS2: 2.1
0%
Низкий
больше 27 лет назад

Уязвимостей на страницу