Latest CVE Feed
-
2.1
LOWCVE-1999-1102
lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.... Read more
- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0154
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.... Read more
- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1074
Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking.... Read more
Affected Products : webmin- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1175
Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, which allows remote attackers to redirect HTTP traffic to arbitrary hosts via WCCP packets to UDP port 2048.... Read more
Affected Products : ios- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1444
genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext.... Read more
Affected Products : alibaba- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0003
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.... Read more
Affected Products : unixware- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0001
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0076
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0043
Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.... Read more
Affected Products : webcam_http_server- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0009
The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.... Read more
Affected Products : optivity_net_architect- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0042
Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.... Read more
Affected Products : mail_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0007
Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service.... Read more
Affected Products : pc-cillin- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0100
The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.... Read more
Affected Products : systems_management_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0039
AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program.... Read more
Affected Products : search_intranet- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0035
resend command in Majordomo allows local users to gain privileges via shell metacharacters.... Read more
Affected Products : majordomo- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0014
Denial of service in Savant web server via a null character in the requested URL.... Read more
Affected Products : savant_webserver- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0041
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.... Read more
Affected Products : macos- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1573
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.... Read more
Affected Products : hp-ux- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0037
Majordomo wrapper allows local users to gain privileges by specifying an alternate configuration file.... Read more
Affected Products : majordomo- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0029
UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack.... Read more
Affected Products : unixware- Published: Dec. 27, 1999
- Modified: Apr. 03, 2025