Latest CVE Feed
-
5.0
MEDIUMCVE-1999-1035
IIS 3.0 and 4.0 on x86 and Alpha allows remote attackers to cause a denial of service (hang) via a malformed GET request, aka the IIS "GET" vulnerability.... Read more
Affected Products : internet_information_server- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1177
Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the pathname for an upload operation.... Read more
Affected Products : nph-publish- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-1451
The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.... Read more
- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-1999-1124
HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the req... Read more
Affected Products : coldfusion- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0815
Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.... Read more
Affected Products : windows_nt- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-1999-1084
The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.... Read more
Affected Products : windows_nt- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-1999-1093
Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page.... Read more
Affected Products : internet_explorer- Published: Dec. 31, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0076
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-1999-0001
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.... Read more
- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2000-0043
Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.... Read more
Affected Products : webcam_http_server- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0003
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.... Read more
Affected Products : unixware- Published: Dec. 30, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0042
Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.... Read more
Affected Products : mail_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0100
The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.... Read more
Affected Products : systems_management_server- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0007
Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service.... Read more
Affected Products : pc-cillin- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2000-0009
The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.... Read more
Affected Products : optivity_net_architect- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0039
AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program.... Read more
Affected Products : search_intranet- Published: Dec. 29, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0041
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.... Read more
Affected Products : macos- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2000-0014
Denial of service in Savant web server via a null character in the requested URL.... Read more
Affected Products : savant_webserver- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2000-0035
resend command in Majordomo allows local users to gain privileges via shell metacharacters.... Read more
Affected Products : majordomo- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1573
Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.... Read more
Affected Products : hp-ux- Published: Dec. 28, 1999
- Modified: Apr. 03, 2025