Latest CVE Feed
-
5.0
MEDIUMCVE-1999-1177
Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the pathname for an upload operation.... Read more
Affected Products : nph-publish- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1074
Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking.... Read more
Affected Products : webmin- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1175
Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, which allows remote attackers to redirect HTTP traffic to arbitrary hosts via WCCP packets to UDP port 2048.... Read more
Affected Products : ios- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1100
Cisco PIX Private Link 4.1.6 and earlier does not properly process certain commands in the configuration file, which reduces the effective key length of the DES key to 48 bits instead of 56 bits, which makes it easier for an attacker to find the proper ke... Read more
Affected Products : pix_private_link- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-1364
Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.... Read more
Affected Products : windows_nt- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1043
Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, which allows remote attackers to cause a denial of service (application error).... Read more
Affected Products : exchange_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1474
PowerPoint 95 and 97 allows remote attackers to cause an application to be run automatically without prompting the user, possibly through the slide show, when the document is opened in browsers such as Internet Explorer.... Read more
Affected Products : powerpoint- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1279
An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view each other's folders when the users share the same Local APPC LU.... Read more
Affected Products : sna_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0001
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0003
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.... Read more
Affected Products : unixware- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0043
Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.... Read more
Affected Products : webcam_http_server- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0076
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0042
Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.... Read more
Affected Products : mail_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0007
Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service.... Read more
Affected Products : pc-cillin- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0100
The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.... Read more
Affected Products : systems_management_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0009
The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.... Read more
Affected Products : optivity_net_architect- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0039
AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program.... Read more
Affected Products : search_intranet- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0035
resend command in Majordomo allows local users to gain privileges via shell metacharacters.... Read more
Affected Products : majordomo- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1573
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.... Read more
Affected Products : hp-ux- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0037
Majordomo wrapper allows local users to gain privileges by specifying an alternate configuration file.... Read more
Affected Products : majordomo- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025