Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-1999-0594

    A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0597

    A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0286

    In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0448

    IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.... Read more

    Affected Products : internet_information_server
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 0.0

    NONE
    CVE-1999-0497

    Anonymous FTP is enabled.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0231

    Buffer overflow in IP-Switch IMail and Seattle Labs Slmail 2.6 packages using a long VRFY command, causing a denial of service and possibly remote access.... Read more

    Affected Products : slmail
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0452

    A service or application has a backdoor password that was placed there by the developer.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0554

    NFS exports system-critical data to the world, e.g. / or a password file.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 0.0

    NONE
    CVE-1999-0632

    The RPC portmapper service is running.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0611

    A system-critical Windows NT registry key has an inappropriate value.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1159

    SSH 2.0.11 and earlier allows local users to request remote forwarding from privileged ports without being root.... Read more

    Affected Products : ssh2
    • Published: Dec. 29, 1998
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1188

    mysqld in MySQL 3.21 creates log files with world-readable permissions, which allows local users to obtain passwords for users who are added to the user database.... Read more

    Affected Products : mysql
    • Published: Dec. 27, 1998
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-1285

    Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed.... Read more

    Affected Products : linux_kernel
    • Published: Dec. 27, 1998
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-1281

    Development version of Breeze Network Server allows remote attackers to cause the system to reboot by accessing the configbreeze CGI program.... Read more

    Affected Products : breeze_network_server
    • Published: Dec. 26, 1998
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0968

    Buffer overflow in BNC IRC proxy allows remote attackers to gain privileges.... Read more

    Affected Products : bnc_irc
    • Published: Dec. 26, 1998
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-1278

    nlog CGI scripts do not properly filter shell metacharacters from the IP address argument, which could allow remote attackers to execute certain commands via (1) nlog-smb.pl or (2) rpc-nlog.pl.... Read more

    Affected Products : nlog
    • Published: Dec. 25, 1998
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1277

    BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key, which could allow other local users to gain privileges by reading the password.... Read more

    Affected Products : backweb_client
    • Published: Dec. 24, 1998
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-1173

    Corel Word Perfect 8 for Linux creates a temporary working directory with world-writable permissions, which allows local users to (1) modify Word Perfect behavior by modifying files in the working directory, or (2) modify files of other users via a symlin... Read more

    Affected Products : wordperfect
    • Published: Dec. 18, 1998
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0188

    The passwd command in Solaris can be subjected to a denial of service.... Read more

    Affected Products : solaris sunos
    • Published: Dec. 17, 1998
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0139

    Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access.... Read more

    Affected Products : solaris sunos
    • Published: Dec. 12, 1998
    • Modified: Apr. 03, 2025
Showing 20 of 293289 Results