Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 384 258

Количество 384 258

nvd логотип

CVE-1999-1377

почти 27 лет назад

Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1376

больше 27 лет назад

Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-1999-1375

больше 27 лет назад

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-1999-1374

больше 21 года назад

perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1373

больше 21 года назад

FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-1999-1372

больше 27 лет назад

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1371

больше 27 лет назад

Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1370

больше 27 лет назад

The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1369

больше 27 лет назад

Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1368

больше 27 лет назад

AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder tree of a Microsoft Exchange server, which could allow viruses to escape detection if a user's rules cause the message to be moved to a different mailbox.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1367

больше 27 лет назад

Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-1999-1366

больше 27 лет назад

Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-1999-1365

около 27 лет назад

Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-1999-1364

больше 26 лет назад

Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1363

больше 26 лет назад

Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1362

больше 26 лет назад

Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1361

больше 28 лет назад

Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-1999-1360

больше 26 лет назад

Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was opened in kernel mode, which causes a crash when the kernel attempts to close the handle.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-1999-1359

больше 26 лет назад

When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-1999-1358

больше 26 лет назад

When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-1999-1377

Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

CVSS2: 5
2%
Низкий
почти 27 лет назад
nvd логотип
CVE-1999-1376

Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.

CVSS2: 10
24%
Средний
больше 27 лет назад
nvd логотип
CVE-1999-1375

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.

CVSS2: 5
31%
Средний
больше 27 лет назад
nvd логотип
CVE-1999-1374

perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.

CVSS2: 5
2%
Низкий
больше 21 года назад
nvd логотип
CVE-1999-1373

FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.

CVSS2: 5
1%
Низкий
больше 21 года назад
nvd логотип
CVE-1999-1372

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1371

Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument.

CVSS2: 7.2
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1370

The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs.

CVSS2: 7.2
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1369

Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.

CVSS2: 4.6
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1368

AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder tree of a Microsoft Exchange server, which could allow viruses to escape detection if a user's rules cause the message to be moved to a different mailbox.

CVSS2: 7.5
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1367

Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users.

CVSS2: 4.6
1%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1366

Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.

CVSS2: 3.6
0%
Низкий
больше 27 лет назад
nvd логотип
CVE-1999-1365

Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default.

CVSS2: 7.2
3%
Низкий
около 27 лет назад
nvd логотип
CVE-1999-1364

Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.

CVSS2: 2.1
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1363

Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.

CVSS2: 2.1
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1362

Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters.

CVSS2: 2.1
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1361

Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.

CVSS2: 6.4
9%
Низкий
больше 28 лет назад
nvd логотип
CVE-1999-1360

Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was opened in kernel mode, which causes a crash when the kernel attempts to close the handle.

CVSS2: 2.1
1%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1359

When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.

CVSS2: 7.5
4%
Низкий
больше 26 лет назад
nvd логотип
CVE-1999-1358

When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.

CVSS2: 4.6
1%
Низкий
больше 26 лет назад

Уязвимостей на страницу