Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 173

Количество 376 173

nvd логотип

CVE-1999-1412

около 27 лет назад

A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1411

больше 27 лет назад

The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1410

больше 29 лет назад

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1409

около 28 лет назад

The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submitting the file to at with the -f argument, which generates error messages that at sends to the user via e-mail.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1408

больше 29 лет назад

Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a socket to connect to a port on the localhost, calling shutdown to clear the socket, then using the same socket to connect to a different port on localhost.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1407

больше 28 лет назад

ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1406

около 28 лет назад

dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1405

больше 27 лет назад

snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1404

почти 28 лет назад

IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1403

почти 28 лет назад

IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1402

около 29 лет назад

The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1401

больше 29 лет назад

Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (iconbook and searchbook).

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1400

около 27 лет назад

The Economist screen saver 1999 with the "Password Protected" option enabled allows users with physical access to the machine to bypass the screen saver and read files by running Internet Explorer while the screen is still locked.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1399

почти 29 лет назад

spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1398

больше 29 лет назад

Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1397

больше 27 лет назад

Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1396

около 34 лет назад

Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash).

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1395

больше 33 лет назад

Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1394

около 27 лет назад

BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1393

около 27 лет назад

Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1412

A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.

CVSS2: 5
35%
Средний
около 27 лет назад
nvd логотип
CVE-1999-1411

The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.

CVSS2: 7.5
2%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1410

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

CVSS2: 6.2
1%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1409

The at program in IRIX 6.2 and NetBSD 1.3.2 and earlier allows local users to read portions of arbitrary files by submitting the file to at with the -f argument, which generates error messages that at sends to the user via e-mail.

CVSS2: 2.1
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1408

Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a socket to connect to a port on the localhost, calling shutdown to clear the socket, then using the same socket to connect to a different port on localhost.

CVSS2: 2.1
1%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1407

ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file.

CVSS2: 2.1
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1406

dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel.

CVSS2: 2.1
0%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1405

snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.

CVSS2: 10
3%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1404

IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.

CVSS2: 5
1%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1403

IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.

CVSS2: 7.2
0%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1402

The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.

CVSS2: 2.1
1%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1401

Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (iconbook and searchbook).

CVSS2: 4.6
0%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1400

The Economist screen saver 1999 with the "Password Protected" option enabled allows users with physical access to the machine to bypass the screen saver and read files by running Internet Explorer while the screen is still locked.

CVSS2: 2.1
0%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1399

spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.

CVSS2: 7.2
1%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1398

Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.

CVSS2: 6.2
1%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1397

Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed.

CVSS2: 7.5
12%
Средний
больше 27 лет назад
nvd логотип
CVE-1999-1396

Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash).

CVSS2: 7.2
0%
Низкий
около 34 лет назад
nvd логотип
CVE-1999-1395

Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.

CVSS2: 7.2
6%
Низкий
больше 33 лет назад
nvd логотип
CVE-1999-1394

BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.

CVSS2: 2.1
1%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1393

Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.

CVSS2: 4.6
0%
Низкий
около 27 лет назад

Уязвимостей на страницу