Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 880

Количество 370 880

nvd логотип

CVE-1999-1399

почти 29 лет назад

spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1398

около 29 лет назад

Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1397

больше 27 лет назад

Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1396

около 34 лет назад

Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash).

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1395

больше 33 лет назад

Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1394

около 27 лет назад

BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1393

около 27 лет назад

Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1392

почти 36 лет назад

Vulnerability in restore0.9 installation script in NeXT 1.0a and 1.0 allows local users to gain root privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1391

почти 36 лет назад

Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combination of the npd program and weak directory permissions.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1390

больше 28 лет назад

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1389

около 28 лет назад

US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set host prompt" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the "host: " prompt.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1388

около 32 лет назад

passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1387

больше 29 лет назад

Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1386

больше 26 лет назад

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-1999-1385

больше 29 лет назад

Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1384

почти 30 лет назад

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1383

почти 30 лет назад

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1382

больше 26 лет назад

NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1381

почти 28 лет назад

Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1380

около 29 лет назад

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.

CVSS2: 5.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1399

spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.

CVSS2: 7.2
1%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1398

Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.

CVSS2: 6.2
1%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1397

Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed.

CVSS2: 7.5
12%
Средний
больше 27 лет назад
nvd логотип
CVE-1999-1396

Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash).

CVSS2: 7.2
0%
Низкий
около 34 лет назад
nvd логотип
CVE-1999-1395

Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.

CVSS2: 7.2
6%
Низкий
больше 33 лет назад
nvd логотип
CVE-1999-1394

BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.

CVSS2: 2.1
1%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1393

Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.

CVSS2: 4.6
0%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1392

Vulnerability in restore0.9 installation script in NeXT 1.0a and 1.0 allows local users to gain root privileges.

CVSS2: 7.2
0%
Низкий
почти 36 лет назад
nvd логотип
CVE-1999-1391

Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combination of the npd program and weak directory permissions.

CVSS2: 7.2
0%
Низкий
почти 36 лет назад
nvd логотип
CVE-1999-1390

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

CVSS2: 7.2
1%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1389

US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set host prompt" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the "host: " prompt.

CVSS2: 7.5
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1388

passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.

CVSS2: 6.2
0%
Низкий
около 32 лет назад
nvd логотип
CVE-1999-1387

Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.

CVSS2: 5
21%
Средний
больше 29 лет назад
nvd логотип
CVE-1999-1386

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite arbitrary files via a symlink attack on the /tmp/perl-eaXXXXX file.

CVSS3: 5.5
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1385

Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

CVSS2: 7.2
0%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1384

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.

CVSS2: 7.2
2%
Низкий
почти 30 лет назад
nvd логотип
CVE-1999-1383

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

CVSS2: 4.6
0%
Низкий
почти 30 лет назад
nvd логотип
CVE-1999-1382

NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.

CVSS2: 7.2
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1381

Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
3%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1380

Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.

CVSS2: 5.1
2%
Низкий
около 29 лет назад

Уязвимостей на страницу