Latest CVE Feed
-
10.0
HIGHCVE-1999-0894
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.... Read more
Affected Products : linux- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0049
Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.... Read more
Affected Products : winamp- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0085
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.... Read more
Affected Products : hotmail- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0062
The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.... Read more
Affected Products : zope- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0051
The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL.... Read more
Affected Products : spectra- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-1999-0735
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.... Read more
- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0057
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.... Read more
Affected Products : coldfusion_server- Published: Jan. 04, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0078
The June 1999 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the awk command.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0082
WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.... Read more
Affected Products : webtv- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0077
The October 1998 version of the HP-UX aserver program allows local users to gain privileges by specifying an alternate PATH which aserver uses to find the ps and grep commands.... Read more
Affected Products : hp-ux- Published: Jan. 02, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-1999-0964
Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment variable.... Read more
Affected Products : freebsd- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0120
The Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authentication via the bAuthenticated parameter.... Read more
Affected Products : spectra- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0069
The recover program in Solstice Backup allows local users to restore sensitive files.... Read more
Affected Products : solstice_backup- Published: Jan. 01, 2000
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-1999-1328
linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack.... Read more
Affected Products : linux- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
9.8
CRITICALCVE-1999-1324
VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which makes it easier for attackers to conduct brute force pass... Read more
Affected Products : openvms_vax- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1287
Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface.... Read more
Affected Products : analog- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1293
mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, which causes Apache to dump core.... Read more
Affected Products : http_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1223
IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a large number of / (forward slash) characters.... Read more
Affected Products : internet_information_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-1999-1335
snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive information.... Read more
Affected Products : linux- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1233
IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does not resolve to a DNS domain, aka the "Domain Resolution" vulnerability.... Read more
Affected Products : internet_information_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025