Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.0

    MEDIUM
    CVE-1999-1035

    IIS 3.0 and 4.0 on x86 and Alpha allows remote attackers to cause a denial of service (hang) via a malformed GET request, aka the IIS "GET" vulnerability.... Read more

    Affected Products : internet_information_server
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-1177

    Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the pathname for an upload operation.... Read more

    Affected Products : nph-publish
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-1451

    The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.... Read more

    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-1999-1124

    HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the req... Read more

    Affected Products : coldfusion
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0815

    Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.... Read more

    Affected Products : windows_nt
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-1999-1084

    The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.... Read more

    Affected Products : windows_nt
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 5.1

    MEDIUM
    CVE-1999-1093

    Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page.... Read more

    Affected Products : internet_explorer
    • Published: Dec. 31, 1999
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2000-0076

    nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.... Read more

    Affected Products : debian_linux nvi
    • Published: Dec. 30, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-1999-0001

    ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.... Read more

    Affected Products : freebsd openbsd bsd_os
    • Published: Dec. 30, 1999
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2000-0043

    Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.... Read more

    Affected Products : webcam_http_server
    • Published: Dec. 30, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0003

    Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.... Read more

    Affected Products : unixware
    • Published: Dec. 30, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2000-0042

    Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.... Read more

    Affected Products : mail_server
    • Published: Dec. 29, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0100

    The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.... Read more

    Affected Products : systems_management_server
    • Published: Dec. 29, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0007

    Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service.... Read more

    Affected Products : pc-cillin
    • Published: Dec. 29, 1999
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2000-0009

    The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.... Read more

    Affected Products : optivity_net_architect
    • Published: Dec. 29, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0039

    AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program.... Read more

    Affected Products : search_intranet
    • Published: Dec. 29, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0041

    Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.... Read more

    Affected Products : macos
    • Published: Dec. 28, 1999
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2000-0014

    Denial of service in Savant web server via a null character in the requested URL.... Read more

    Affected Products : savant_webserver
    • Published: Dec. 28, 1999
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2000-0035

    resend command in Majordomo allows local users to gain privileges via shell metacharacters.... Read more

    Affected Products : majordomo
    • Published: Dec. 28, 1999
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-1999-1573

    Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files.... Read more

    Affected Products : hp-ux
    • Published: Dec. 28, 1999
    • Modified: Apr. 03, 2025
Showing 20 of 294848 Results