Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 565

Количество 376 565

nvd логотип

CVE-1999-1144

больше 29 лет назад

Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1143

около 29 лет назад

Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1142

около 34 лет назад

SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1141

около 29 лет назад

Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1140

больше 28 лет назад

Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1139

почти 29 лет назад

Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1138

почти 33 года назад

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-1999-1137

почти 33 года назад

The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1136

около 28 лет назад

Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1135

больше 32 лет назад

Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1134

около 32 лет назад

Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHSS_4066.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1133

почти 29 лет назад

HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1132

больше 26 лет назад

Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1131

почти 29 лет назад

Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1130

около 27 лет назад

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1129

почти 27 лет назад

Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1128

больше 29 лет назад

Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-1999-1127

больше 26 лет назад

Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-1999-1126

больше 26 лет назад

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1125

почти 29 лет назад

Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1144

Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges.

CVSS2: 7.2
1%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1143

Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.

CVSS2: 7.2
0%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1142

SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user.

CVSS2: 7.2
0%
Низкий
около 34 лет назад
nvd логотип
CVE-1999-1141

Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.

CVSS2: 7.5
1%
Низкий
около 29 лет назад
nvd логотип
CVE-1999-1140

Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.

CVSS2: 7.2
0%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1139

Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file.

CVSS2: 7.2
0%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1138

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

CVSS2: 10
2%
Низкий
почти 33 года назад
nvd логотип
CVE-1999-1137

The permissions for the /dev/audio device on Solaris 2.2 and earlier, and SunOS 4.1.x, allow any local user to read from the device, which could be used by an attacker to monitor conversations happening near a machine that has a microphone.

CVSS2: 2.1
0%
Низкий
почти 33 года назад
nvd логотип
CVE-1999-1136

Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Response Center Predictive systems.

CVSS2: 4.6
1%
Низкий
около 28 лет назад
nvd логотип
CVE-1999-1135

Vulnerability in VUE 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4994 and PHSS_5438.

CVSS2: 7.2
1%
Низкий
больше 32 лет назад
nvd логотип
CVE-1999-1134

Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHSS_4066.

CVSS2: 7.2
1%
Низкий
около 32 лет назад
nvd логотип
CVE-1999-1133

HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.

CVSS2: 4.6
0%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1132

Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.

CVSS2: 5
18%
Средний
больше 26 лет назад
nvd логотип
CVE-1999-1131

Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

CVSS2: 5
2%
Низкий
почти 29 лет назад
nvd логотип
CVE-1999-1130

Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.

CVSS2: 5
3%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1129

Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag.

CVSS2: 7.5
2%
Низкий
почти 27 лет назад
nvd логотип
CVE-1999-1128

Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.

CVSS2: 5.1
4%
Низкий
больше 29 лет назад
nvd логотип
CVE-1999-1127

Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.

CVSS3: 7.5
18%
Средний
больше 26 лет назад
nvd логотип
CVE-1999-1126

Cisco Resource Manager (CRM) 1.1 and earlier creates certain files with insecure permissions that allow local users to obtain sensitive configuration information including usernames, passwords, and SNMP community strings, from (1) swim_swd.log, (2) swim_debug.log, (3) dbi_debug.log, and (4) temporary files whose names begin with "DPR_".

CVSS2: 2.1
0%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1125

Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.

CVSS2: 10
4%
Низкий
почти 29 лет назад

Уязвимостей на страницу