CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-1999-0383

    Last Modified: 16 Apr 2026

    ACC Tigris allows public access without a login.

    Published: 2 Feb 1999
    5
    Medium

    CVE-1999-0362

    Last Modified: 16 Apr 2026

    WS_FTP server remote denial of service through cwd command.

    Published: 2 Feb 1999
    7.2
    High

    CVE-1999-0363

    Last Modified: 16 Apr 2026

    SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.

    Published: 2 Feb 1999
    2.6
    Low

    CVE-1999-1453

    Last Modified: 16 Apr 2026

    Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.

    Published: 2 Feb 1999
    4.6
    Medium

    CVE-1999-1171

    Last Modified: 16 Apr 2026

    IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.

    Published: 2 Feb 1999
    7.5
    High

    CVE-1999-0291

    Last Modified: 16 Apr 2026

    The WinGate proxy is installed without a password, which allows remote attackers to redirect connections without authentication.

    Published: 1 Feb 1999
    6.4
    Medium

    CVE-1999-0351

    Last Modified: 16 Apr 2026

    FTP PASV "Pizza Thief" denial of service and unauthorized data access. Attackers can steal data by connecting to a port that was intended for use by a client.

    Published: 1 Feb 1999
    7.2
    High

    CVE-1999-0358

    Last Modified: 16 Apr 2026

    Digital Unix 4.0 has a buffer overflow in the inc program of the mh package.

    Published: 1 Feb 1999
    4.6
    Medium

    CVE-1999-0459

    Last Modified: 16 Apr 2026

    Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot.

    Published: 1 Feb 1999
    7.2
    High

    CVE-1999-0373

    Last Modified: 16 Apr 2026

    Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root.

    Published: 1 Feb 1999
    5
    Medium

    CVE-1999-0403

    Last Modified: 16 Apr 2026

    A bug in Cyrix CPUs on Linux allows local users to perform a denial of service.

    Published: 1 Feb 1999
    7.2
    High

    CVE-1999-0360

    Last Modified: 16 Apr 2026

    MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely.

    Published: 30 Jan 1999
    5
    Medium

    CVE-1999-1546

    Last Modified: 16 Apr 2026

    netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.

    Published: 29 Jan 1999
    10
    Critical

    CVE-2000-0370

    Last Modified: 16 Apr 2026

    The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail command.

    Published: 29 Jan 1999
    10
    Critical

    CVE-1999-0461

    Last Modified: 16 Apr 2026

    Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address.

    Published: 28 Jan 1999
    7.2
    High

    CVE-1999-0952

    Last Modified: 16 Apr 2026

    Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.

    Published: 28 Jan 1999
    7.5
    High

    CVE-1999-0349

    Last Modified: 16 Apr 2026

    A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary commands.

    Published: 27 Jan 1999
    5
    Medium

    CVE-1999-0348

    Last Modified: 16 Apr 2026

    IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory.

    Published: 27 Jan 1999
    7.5
    High

    CVE-1999-1450

    Last Modified: 16 Apr 2026

    Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges.

    Published: 27 Jan 1999
    4.6
    Medium

    CVE-1999-0400

    Last Modified: 16 Apr 2026

    Denial of service in Linux 2.2.0 running the ldd command on a core file.

    Published: 26 Jan 1999
    7.5
    High

    CVE-1999-0450

    Last Modified: 16 Apr 2026

    In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).

    Published: 26 Jan 1999
    10
    Critical

    CVE-1999-0347

    Last Modified: 16 Apr 2026

    Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.

    Published: 26 Jan 1999
    7.8
    High

    CVE-1999-0449

    Last Modified: 16 Apr 2026

    The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.

    Published: 26 Jan 1999
    10
    Critical

    CVE-1999-0356

    Last Modified: 16 Apr 2026

    ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book.

    Published: 25 Jan 1999
    7.2
    High

    CVE-1999-0352

    Last Modified: 16 Apr 2026

    ControlIT 4.5 and earlier (aka Remotely Possible) has weak password encryption.

    Published: 25 Jan 1999
    5
    Medium

    CVE-1999-0357

    Last Modified: 16 Apr 2026

    Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets.

    Published: 25 Jan 1999
    7.2
    High

    CVE-1999-1458

    Last Modified: 16 Apr 2026

    Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.

    Published: 25 Jan 1999
    5
    Medium

    CVE-1999-1544

    Last Modified: 16 Apr 2026

    Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.

    Published: 24 Jan 1999
    7.5
    High

    CVE-1999-1264

    Last Modified: 16 Apr 2026

    WebRamp M3 router does not disable remote telnet or HTTP access to itself, even when access has been explicitly disabled.

    Published: 21 Jan 1999
    7.2
    High

    CVE-1999-0121

    Last Modified: 16 Apr 2026

    Buffer overflow in dtaction command gives root access.

    Published: 21 Jan 1999
    2.1
    Low

    CVE-1999-0451

    Last Modified: 16 Apr 2026

    Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.

    Published: 19 Jan 1999
    10
    Critical

    CVE-1999-0119

    Last Modified: 16 Apr 2026

    Windows NT 4.0 beta allows users to read and delete shares.

    Published: 19 Jan 1999
    7.2
    High

    CVE-1999-0457

    Last Modified: 16 Apr 2026

    Linux ftpwatch program allows local users to gain root privileges.

    Published: 17 Jan 1999
    5
    Medium

    CVE-1999-0678

    Last Modified: 16 Apr 2026

    A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server.

    Published: 17 Jan 1999
    10
    Critical

    CVE-1999-1376

    Last Modified: 16 Apr 2026

    Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.

    Published: 14 Jan 1999
    2.1
    Low

    CVE-1999-1538

    Last Modified: 16 Apr 2026

    When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.

    Published: 14 Jan 1999
    5
    Medium

    CVE-1999-1172

    Last Modified: 16 Apr 2026

    By design, Maximizer Enterprise 4 calendar and address book program allows arbitrary users to modify the calendar of other users when the calendar is being shared.

    Published: 14 Jan 1999
    5
    Medium

    CVE-1999-0063

    Last Modified: 16 Apr 2026

    Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.

    Published: 11 Jan 1999
    5
    Medium

    CVE-1999-0392

    Last Modified: 16 Apr 2026

    Buffer overflow in Thomas Boutell's cgic library version up to 1.05.

    Published: 10 Jan 1999
    2.1
    Low

    CVE-1999-0442

    Last Modified: 16 Apr 2026

    Solaris ff.core allows local users to modify files.

    Published: 7 Jan 1999
    2.1
    Low

    CVE-1999-0458

    Last Modified: 16 Apr 2026

    L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.

    Published: 6 Jan 1999
    7.2
    High

    CVE-1999-1268

    Last Modified: 16 Apr 2026

    Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.

    Published: 6 Jan 1999
    7.5
    High

    CVE-1999-0391

    Last Modified: 16 Apr 2026

    The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user.

    Published: 5 Jan 1999
    7.2
    High

    CVE-1999-0390

    Last Modified: 16 Apr 2026

    Buffer overflow in Dosemu Slang library in Linux.

    Published: 4 Jan 1999
    2.1
    Low

    CVE-1999-0464

    Last Modified: 16 Apr 2026

    Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames.

    Published: 4 Jan 1999
    7.2
    High

    CVE-1999-0389

    Last Modified: 16 Apr 2026

    Buffer overflow in the bootp server in the Debian Linux netstd package.

    Published: 3 Jan 1999
    7.2
    High

    CVE-1999-0914

    Last Modified: 16 Apr 2026

    Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.

    Published: 3 Jan 1999
    5
    Medium

    CVE-2000-0054

    Last Modified: 16 Apr 2026

    search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.

    Published: 3 Jan 1999
    7.2
    High

    CVE-2000-0005

    Last Modified: 16 Apr 2026

    HP-UX aserver program allows local users to gain privileges via a symlink attack.

    Published: 2 Jan 1999
    5
    Medium

    CVE-1999-0402

    Last Modified: 16 Apr 2026

    wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.

    Published: 2 Jan 1999