Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.2

    HIGH
    CVE-1999-1268

    Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.... Read more

    Affected Products : kde
    • Published: Jan. 06, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-0391

    The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user.... Read more

    • Published: Jan. 05, 1999
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-0464

    Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames.... Read more

    Affected Products : tripwire
    • Published: Jan. 04, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0390

    Buffer overflow in Dosemu Slang library in Linux.... Read more

    Affected Products : suse_linux linux
    • Published: Jan. 04, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0389

    Buffer overflow in the bootp server in the Debian Linux netstd package.... Read more

    Affected Products : debian_linux
    • Published: Jan. 03, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-0914

    Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.... Read more

    Affected Products : debian_linux
    • Published: Jan. 03, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0054

    search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.... Read more

    Affected Products : home_free
    • Published: Jan. 03, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0402

    wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.... Read more

    Affected Products : wget
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-1422

    The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other use... Read more

    Affected Products : slackware_linux
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1170

    IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.... Read more

    Affected Products : imail ws_ftp_server
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0005

    HP-UX aserver program allows local users to gain privileges via a symlink attack.... Read more

    Affected Products : hp-ux aserver 9000
    • Published: Jan. 02, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-0398

    In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.... Read more

    Affected Products : ssh ssh2
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-0388

    DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute commands as root.... Read more

    Affected Products : suguard
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0397

    The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0547

    An SSH server allows authentication through the .rhosts file.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0512

    A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 5.1

    MEDIUM
    CVE-1999-1440

    Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which co... Read more

    Affected Products : icq_98a
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-1999-1430

    PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as... Read more

    Affected Products : davinci
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-0559

    A system-critical Unix file or directory has inappropriate permissions.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
  • 0.0

    NONE
    CVE-1999-0635

    The echo service is running.... Read more

    Affected Products :
    • Published: Jan. 01, 1999
    • Modified: Apr. 03, 2025
Showing 20 of 293562 Results