CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-1999-0507

    Last Modified: 16 Apr 2026

    An account on a router, firewall, or other network device has a guessable password.

    Published: 1 Apr 1998
    10
    Critical

    CVE-1999-0003

    Last Modified: 16 Apr 2026

    Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).

    Published: 1 Apr 1998
    7.2
    High

    CVE-1999-0960

    Last Modified: 16 Apr 2026

    IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.

    Published: 20 Mar 1998
    5
    Medium

    CVE-1999-1075

    Last Modified: 16 Apr 2026

    inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.

    Published: 18 Mar 1998
    5
    Medium

    CVE-1999-0060

    Last Modified: 16 Apr 2026

    Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port, which is used by the Java Configurator tool.

    Published: 16 Mar 1998
    2.1
    Low

    CVE-1999-1118

    Last Modified: 16 Apr 2026

    ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.

    Published: 11 Mar 1998
    2.1
    Low

    CVE-1999-1407

    Last Modified: 16 Apr 2026

    ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file.

    Published: 9 Mar 1998
    7.2
    High

    CVE-1999-1272

    Last Modified: 16 Apr 2026

    Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0795

    Last Modified: 16 Apr 2026

    The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0266

    Last Modified: 16 Apr 2026

    The info2www CGI script allows remote file access or remote command execution.

    Published: 1 Mar 1998
    9.3
    Critical

    CVE-1999-0320

    Last Modified: 16 Apr 2026

    SunOS rpc.cmsd allows attackers to obtain root access by overwriting arbitrary files.

    Published: 1 Mar 1998
    5
    Medium

    CVE-1999-0514

    Last Modified: 16 Apr 2026

    UDP messages to broadcast addresses are allowed, allowing for a Fraggle attack that can cause a denial of service by flooding the target.

    Published: 1 Mar 1998
    7.2
    High

    CVE-1999-0330

    Last Modified: 16 Apr 2026

    Linux bdash game has a buffer overflow that allows local users to gain root access.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0502

    Last Modified: 16 Apr 2026

    A Unix account has a default, null, blank, or missing password.

    Published: 1 Mar 1998
    1.2
    Low

    CVE-1999-1486

    Last Modified: 16 Apr 2026

    sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.

    Published: 25 Feb 1998
    2.1
    Low

    CVE-1999-1229

    Last Modified: 16 Apr 2026

    Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allows local users to read arbitrary files via a symlink from config.cfg to the target file.

    Published: 25 Feb 1998
    5
    Medium

    CVE-1999-0290

    Last Modified: 16 Apr 2026

    The WinGate telnet proxy allows remote attackers to cause a denial of service via a large number of connections to localhost.

    Published: 21 Feb 1998
    7.5
    High

    CVE-1999-1273

    Last Modified: 16 Apr 2026

    Squid Internet Object Cache 1.1.20 allows users to bypass access control lists (ACLs) by encoding the URL with hexadecimal escape sequences.

    Published: 20 Feb 1998
    10
    Critical

    CVE-1999-0323

    Last Modified: 16 Apr 2026

    FreeBSD mmap function allows users to modify append-only or immutable files.

    Published: 20 Feb 1998
    7.5
    High

    CVE-1999-1207

    Last Modified: 16 Apr 2026

    Buffer overflow in web-admin tool in NetXRay 2.6 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request.

    Published: 18 Feb 1998
    5
    Medium

    CVE-1999-0225

    Last Modified: 16 Apr 2026

    Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed SMB logon request in which the actual data size does not match the specified size.

    Published: 14 Feb 1998
    5
    Medium

    CVE-1999-0258

    Last Modified: 16 Apr 2026

    Bonk variation of teardrop IP fragmentation denial of service.

    Published: 13 Feb 1998
    7
    High

    CVE-1999-0012

    Last Modified: 16 Apr 2026

    Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.

    Published: 6 Feb 1998
    2.1
    Low

    CVE-1999-1269

    Last Modified: 16 Apr 2026

    Screen savers in KDE beta 3 allows local users to overwrite arbitrary files via a symlink attack on the .kss.pid file.

    Published: 6 Feb 1998
    5
    Medium

    CVE-1999-1445

    Last Modified: 16 Apr 2026

    Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.

    Published: 2 Feb 1998
    7.2
    High

    CVE-1999-0304

    Last Modified: 16 Apr 2026

    mmap function in BSD allows local attackers in the kmem group to modify memory through devices.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0305

    Last Modified: 16 Apr 2026

    The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.

    Published: 1 Feb 1998
    7.5
    High

    CVE-1999-0256

    Last Modified: 16 Apr 2026

    Buffer overflow in War FTP allows remote execution of commands.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0486

    Last Modified: 16 Apr 2026

    Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, potentially causing a system crash.

    Published: 1 Feb 1998
    7.2
    High

    CVE-1999-0296

    Last Modified: 16 Apr 2026

    Solaris volrmmount program allows attackers to read any file.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0087

    Last Modified: 16 Apr 2026

    Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0264

    Last Modified: 16 Apr 2026

    htmlscript CGI program allows remote read access to files.

    Published: 27 Jan 1998
    4.6
    Medium

    CVE-1999-0125

    Last Modified: 16 Apr 2026

    Buffer overflow in SGI IRIX mailx program.

    Published: 25 Jan 1998
    8.4
    High

    CVE-1999-0013

    Last Modified: 16 Apr 2026

    Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent user.

    Published: 22 Jan 1998
    7.2
    High

    CVE-1999-0014

    Last Modified: 16 Apr 2026

    Unauthorized privileged access or denial of service via dtappgather program in CDE.

    Published: 21 Jan 1998
    7.2
    High

    CVE-1999-1487

    Last Modified: 16 Apr 2026

    Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.

    Published: 21 Jan 1998
    7.8
    High

    CVE-1999-1045

    Last Modified: 16 Apr 2026

    pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malformed request.

    Published: 15 Jan 1998
    5
    Medium

    CVE-1999-0271

    Last Modified: 16 Apr 2026

    Progressive Networks Real Video server (pnserver) can be crashed remotely.

    Published: 15 Jan 1998
    7.2
    High

    CVE-1999-0958

    Last Modified: 16 Apr 2026

    sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack.

    Published: 12 Jan 1998
    7.2
    High

    CVE-1999-1176

    Last Modified: 16 Apr 2026

    Buffer overflow in cidentd ident daemon allows local users to gain root privileges via a long line in the .authlie script.

    Published: 10 Jan 1998
    5
    Medium

    CVE-1999-0086

    Last Modified: 16 Apr 2026

    AIX routed allows remote users to modify sensitive files.

    Published: 8 Jan 1998
    2.1
    Low

    CVE-1999-1429

    Last Modified: 16 Apr 2026

    DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to damage disks through the ff device driver.

    Published: 5 Jan 1998
    5
    Medium

    CVE-1999-0513

    Last Modified: 16 Apr 2026

    ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.

    Published: 5 Jan 1998
    2.1
    Low

    CVE-1999-1439

    Last Modified: 16 Apr 2026

    gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.

    Published: 2 Jan 1998
    5
    Medium

    CVE-1999-0273

    Last Modified: 16 Apr 2026

    Denial of service through Solaris 2.5.1 telnet by sending ^D characters.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0239

    Last Modified: 16 Apr 2026

    Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.

    Published: 1 Jan 1998
    4.6
    Medium

    CVE-1999-0114

    Last Modified: 16 Apr 2026

    Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-2.4 mail package using a symlink attack.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0331

    Last Modified: 16 Apr 2026

    Buffer overflow in Internet Explorer 4.0(1).

    Published: 1 Jan 1998
    7.2
    High

    CVE-1999-0341

    Last Modified: 16 Apr 2026

    Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0293

    Last Modified: 16 Apr 2026

    AAA authentication on Cisco systems allows attackers to execute commands without authorization.

    Published: 1 Jan 1998