Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 4.6

    MEDIUM
    CVE-1999-1170

    IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.... Read more

    Affected Products : imail ws_ftp_server
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-1422

    The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other use... Read more

    Affected Products : slackware_linux
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0005

    HP-UX aserver program allows local users to gain privileges via a symlink attack.... Read more

    Affected Products : hp-ux aserver 9000
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0402

    wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.... Read more

    Affected Products : wget
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0596

    A Windows NT log file has an inappropriate maximum size or retention period.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0454

    A remote attacker can sometimes identify the operating system of a host based on how it reacts to some IP or ICMP packets, using a tool such as nmap or queso.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0569

    A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0661

    A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH... Read more

    Affected Products : sendmail
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0665

    An application-critical Windows NT registry key has an inappropriate value.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0198

    finger .@host on some systems may print information on some user accounts.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0527

    The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory is writeable by world, a real password file is obtainable, or executable commands such as "ls" can be overwritten.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0240

    Some filters or firewalls allow fragmented SYN packets with IP reserved bits in violation of their implemented policy.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0528

    A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0618

    The rexec service is running.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 0.0

    NONE
    CVE-1999-0625

    The rpc.rquotad service is running.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-1430

    PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as... Read more

    Affected Products : davinci
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 5.1

    MEDIUM
    CVE-1999-1440

    Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which co... Read more

    Affected Products : icq_98a
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-1568

    Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a long PORT command.... Read more

    Affected Products : ncftpd_server
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0588

    A filter in a router or firewall allows unusual fragmented packets.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-0388

    DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute commands as root.... Read more

    Affected Products : suguard
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
Showing 20 of 293335 Results