CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-1999-0016

    Last Modified: 16 Apr 2026

    Land IP denial of service.

    Published: 1 Dec 1997
    7.5
    High

    CVE-1999-0244

    Last Modified: 16 Apr 2026

    Livingston RADIUS code has a buffer overflow which can allow remote execution of commands as root.

    Published: 1 Dec 1997
    7.5
    High

    CVE-1999-1257

    Last Modified: 16 Apr 2026

    Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark).

    Published: 26 Nov 1997
    10
    Critical

    CVE-1999-0210

    Last Modified: 16 Apr 2026

    Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.

    Published: 26 Nov 1997
    7.2
    High

    CVE-1999-1209

    Last Modified: 16 Apr 2026

    Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root privileges.

    Published: 20 Nov 1997
    7.2
    High

    CVE-1999-1210

    Last Modified: 16 Apr 2026

    xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environmental variable set to a display that xterm cannot access.

    Published: 12 Nov 1997
    6.2
    Medium

    CVE-1999-1424

    Last Modified: 16 Apr 2026

    Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.

    Published: 10 Nov 1997
    6.2
    Medium

    CVE-1999-1428

    Last Modified: 16 Apr 2026

    Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.

    Published: 10 Nov 1997
    6.2
    Medium

    CVE-1999-1427

    Last Modified: 16 Apr 2026

    Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.

    Published: 10 Nov 1997
    6.2
    Medium

    CVE-1999-1425

    Last Modified: 16 Apr 2026

    Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.

    Published: 10 Nov 1997
    6.2
    Medium

    CVE-1999-1426

    Last Modified: 16 Apr 2026

    Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.

    Published: 10 Nov 1997
    5
    Medium

    CVE-1999-1069

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in carbo.dll in iCat Carbo Server 3.0.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the icatcommand parameter.

    Published: 8 Nov 1997
    7.5
    High

    CVE-1999-0021

    Last Modified: 16 Apr 2026

    Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program.

    Published: 5 Nov 1997
    7.2
    High

    CVE-1999-0306

    Last Modified: 16 Apr 2026

    buffer overflow in HP xlock program.

    Published: 4 Nov 1997
    10
    Critical

    CVE-1999-0967

    Last Modified: 16 Apr 2026

    Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol.

    Published: 1 Nov 1997
    5
    Medium

    CVE-1999-0216

    Last Modified: 16 Apr 2026

    Denial of service of inetd on Linux through SYN and RST packets.

    Published: 1 Nov 1997
    7.2
    High

    CVE-1999-0328

    Last Modified: 16 Apr 2026

    SGI permissions program allows local users to gain root privileges.

    Published: 1 Nov 1997
    2.1
    Low

    CVE-1999-0327

    Last Modified: 16 Apr 2026

    SGI syserr program allows local users to corrupt files.

    Published: 1 Nov 1997
    2.1
    Low

    CVE-1999-0322

    Last Modified: 16 Apr 2026

    The open() function in FreeBSD allows local attackers to write to arbitrary files.

    Published: 29 Oct 1997
    7.2
    High

    CVE-1999-0092

    Last Modified: 16 Apr 2026

    Various vulnerabilities in the AIX portmir command allows local users to obtain root access.

    Published: 29 Oct 1997
    4.6
    Medium

    CVE-1999-0094

    Last Modified: 16 Apr 2026

    AIX piodmgrsu command allows local users to gain additional group privileges.

    Published: 29 Oct 1997
    7.2
    High

    CVE-1999-0093

    Last Modified: 16 Apr 2026

    AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.

    Published: 29 Oct 1997
    10
    Critical

    CVE-1999-0097

    Last Modified: 16 Apr 2026

    The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

    Published: 29 Oct 1997
    7.2
    High

    CVE-1999-0089

    Last Modified: 16 Apr 2026

    Buffer overflow in AIX libDtSvc library can allow local users to gain root access.

    Published: 28 Oct 1997
    7.2
    High

    CVE-1999-0091

    Last Modified: 16 Apr 2026

    Buffer overflow in AIX writesrv command allows local users to obtain root access.

    Published: 28 Oct 1997
    5
    Medium

    CVE-1999-1261

    Last Modified: 16 Apr 2026

    Buffer overflow in Rainbow Six Multiplayer allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long nickname (nick) command.

    Published: 24 Oct 1997
    5
    Medium

    CVE-1999-1131

    Last Modified: 16 Apr 2026

    Buffer overflow in OSF Distributed Computing Environment (DCE) security demon (secd) in IRIX 6.4 and earlier allows attackers to cause a denial of service via a long principal, group, or organization.

    Published: 24 Oct 1997
    7.2
    High

    CVE-1999-0072

    Last Modified: 16 Apr 2026

    Buffer overflow in AIX xdat gives root access to local users.

    Published: 22 Oct 1997
    7.5
    High

    CVE-1999-0068

    Last Modified: 16 Apr 2026

    CGI PHP mylog script allows an attacker to read any file on the target server.

    Published: 19 Oct 1997
    10
    Critical

    CVE-1999-0192

    Last Modified: 16 Apr 2026

    Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.

    Published: 18 Oct 1997
    5
    Medium

    CVE-1999-0346

    Last Modified: 16 Apr 2026

    CGI PHP mlog script allows an attacker to read any file on the target server.

    Published: 16 Oct 1997
    3.6
    Low

    CVE-1999-1224

    Last Modified: 16 Apr 2026

    IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.

    Published: 8 Oct 1997
    7.2
    High

    CVE-1999-1095

    Last Modified: 16 Apr 2026

    sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are writable by the user running sort, as observed in updatedb and other programs that use sort.

    Published: 6 Oct 1997
    7.5
    High

    CVE-1999-1061

    Last Modified: 16 Apr 2026

    HP Laserjet printers with JetDirect cards, when configured with TCP/IP, can be configured without a password, which allows remote attackers to connect to the printer and change its IP address or disable logging.

    Published: 4 Oct 1997
    7.5
    High

    CVE-1999-1062

    Last Modified: 16 Apr 2026

    HP Laserjet printers with JetDirect cards, when configured with TCP/IP, allow remote attackers to bypass print filters by directly sending PostScript documents to TCP ports 9099 and 9100.

    Published: 4 Oct 1997
    5.1
    Medium

    CVE-1999-0061

    Last Modified: 16 Apr 2026

    File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).

    Published: 2 Oct 1997
    5
    Medium

    CVE-1999-0294

    Last Modified: 16 Apr 2026

    All records in a WINS database can be deleted through SNMP for a denial of service.

    Published: 1 Oct 1997
    7.2
    High

    CVE-1999-0090

    Last Modified: 16 Apr 2026

    Buffer overflow in AIX rcp command allows local users to obtain root access.

    Published: 1 Oct 1997
    5
    Medium

    CVE-1999-1213

    Last Modified: 16 Apr 2026

    Vulnerability in telnet service in HP-UX 10.30 allows attackers to cause a denial of service.

    Published: 1 Oct 1997
    7.5
    High

    CVE-1999-0160

    Last Modified: 16 Apr 2026

    Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections.

    Published: 1 Oct 1997
    5
    Medium

    CVE-1999-0272

    Last Modified: 16 Apr 2026

    Denial of service in Slmail v2.5 through the POP3 port.

    Published: 1 Oct 1997
    7.5
    High

    CVE-1999-0300

    Last Modified: 16 Apr 2026

    nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers.

    Published: 1 Oct 1997
    7.2
    High

    CVE-1999-0295

    Last Modified: 16 Apr 2026

    Solaris sysdef command allows local users to read kernel memory, potentially leading to root privileges.

    Published: 1 Oct 1997
    4.6
    Medium

    CVE-1999-0326

    Last Modified: 16 Apr 2026

    Vulnerability in HP-UX mediainit program.

    Published: 1 Oct 1997
    7.5
    High

    CVE-1999-0185

    Last Modified: 16 Apr 2026

    In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trusts the FTP server, allowing remote command execution.

    Published: 1 Oct 1997
    10
    Critical

    CVE-1999-0182

    Last Modified: 16 Apr 2026

    Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.

    Published: 30 Sept 1997
    7.5
    High

    CVE-1999-0267

    Last Modified: 16 Apr 2026

    Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution.

    Published: 23 Sept 1997
    Unknown

    CVE-1999-0282

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-1584, CVE-1999-1586. Reason: This candidate combined references from one issue with the description from another issue. Notes: Users should consult CVE-1999-1584 and CVE-1999-1586 to obtain the appropriate name. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 23 Sept 1997
    7.6
    High

    CVE-1999-0955

    Last Modified: 16 Apr 2026

    Race condition in wu-ftpd and BSDI ftpd allows remote attackers to gain root access via the SITE EXEC command.

    Published: 23 Sept 1997
    7.2
    High

    CVE-1999-0956

    Last Modified: 16 Apr 2026

    The NeXT NetInfo _writers property allows local users to gain root privileges or conduct a denial of service.

    Published: 19 Sept 1997