Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 565

Количество 376 565

nvd логотип

CVE-1999-1024

больше 24 лет назад

ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1023

около 27 лет назад

useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1022

почти 32 года назад

serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execute the ls program, which allows local users to gain root privileges via a Trojan horse ls program.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-1999-1021

больше 33 лет назад

NFS on SunOS 4.1 through 4.1.2 ignores the high order 16 bits in a 32 bit UID, which allows a local user to gain root access if the lower 16 bits are set to 0, as fixed by the NFS jumbo patch upgrade.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1020

почти 28 лет назад

The installation of Novell Netware NDS 5.99 provides an unauthenticated client with Read access for the tree, which allows remote attackers to access sensitive information such as users, groups, and readable objects via CX.EXE and NLIST.EXE.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1019

около 27 лет назад

SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan horse, facilitating a root or Administrator compromise.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1018

около 27 лет назад

IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1017

около 27 лет назад

Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recipient opens the message.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1016

почти 27 лет назад

Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1015

больше 28 лет назад

Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1014

почти 27 лет назад

Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1013

почти 27 лет назад

named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1012

больше 27 лет назад

SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1011

около 27 лет назад

The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-1999-1010

больше 26 лет назад

An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1009

больше 26 лет назад

The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-1999-1008

около 26 лет назад

xsoldier program allows local users to gain root access via a long argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1007

больше 26 лет назад

Buffer overflow in VDO Live Player allows remote attackers to execute commands on the VDO client via a malformed .vdo file.

CVSS2: 7.6
EPSS: Низкий
nvd логотип

CVE-1999-1006

больше 26 лет назад

Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1005

больше 26 лет назад

Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1024

ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet.

CVSS2: 7.5
3%
Низкий
больше 24 лет назад
nvd логотип
CVE-1999-1023

useradd in Solaris 7.0 does not properly interpret certain date formats as specified in the "-e" (expiration date) argument, which could allow users to login after their accounts have expired.

CVSS2: 4.6
0%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1022

serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execute the ls program, which allows local users to gain root privileges via a Trojan horse ls program.

CVSS2: 6.2
1%
Низкий
почти 32 года назад
nvd логотип
CVE-1999-1021

NFS on SunOS 4.1 through 4.1.2 ignores the high order 16 bits in a 32 bit UID, which allows a local user to gain root access if the lower 16 bits are set to 0, as fixed by the NFS jumbo patch upgrade.

CVSS2: 7.2
0%
Низкий
больше 33 лет назад
nvd логотип
CVE-1999-1020

The installation of Novell Netware NDS 5.99 provides an unauthenticated client with Read access for the tree, which allows remote attackers to access sensitive information such as users, groups, and readable objects via CX.EXE and NLIST.EXE.

CVSS2: 7.5
7%
Низкий
почти 28 лет назад
nvd логотип
CVE-1999-1019

SpectroSERVER in Cabletron Spectrum Enterprise Manager 5.0 installs a directory tree with insecure permissions, which allows local users to replace a privileged executable (processd) with a Trojan horse, facilitating a root or Administrator compromise.

CVSS2: 7.2
0%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1018

IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets.

CVSS2: 7.5
7%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1017

Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recipient opens the message.

CVSS2: 7.5
1%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1016

Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.

CVSS2: 5
8%
Низкий
почти 27 лет назад
nvd логотип
CVE-1999-1015

Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.

CVSS2: 5
6%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1014

Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.

CVSS2: 4.6
1%
Низкий
почти 27 лет назад
nvd логотип
CVE-1999-1013

named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.

CVSS2: 7.2
0%
Низкий
почти 27 лет назад
nvd логотип
CVE-1999-1012

SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string.

CVSS2: 5
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1011

The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands.

CVSS2: 10
77%
Высокий
около 27 лет назад
nvd логотип
CVE-1999-1010

An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.

CVSS2: 2.1
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1009

The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system.

CVSS2: 2.6
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1008

xsoldier program allows local users to gain root access via a long argument.

CVSS2: 7.2
1%
Низкий
около 26 лет назад
nvd логотип
CVE-1999-1007

Buffer overflow in VDO Live Player allows remote attackers to execute commands on the VDO client via a malformed .vdo file.

CVSS2: 7.6
4%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1006

Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.

CVSS2: 5
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1005

Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) attack using the HELP parameter.

CVSS2: 5
8%
Низкий
больше 26 лет назад

Уязвимостей на страницу