CVE Feed

    Dashboard / CVE

    7.2
    High

    CVE-1999-1096

    Last Modified: 16 Apr 2026

    Buffer overflow in kscreensaver in KDE klock allows local users to gain root privileges via a long HOME environmental variable.

    Published: 16 May 1998
    7.5
    High

    CVE-1999-1179

    Last Modified: 16 Apr 2026

    Vulnerability in man.sh CGI script, included in May 1998 issue of SysAdmin Magazine, allows remote attackers to execute arbitrary commands.

    Published: 15 May 1998
    7.2
    High

    CVE-1999-0055

    Last Modified: 16 Apr 2026

    Buffer overflows in Sun libnsl allow root access.

    Published: 14 May 1998
    7.5
    High

    CVE-1999-1389

    Last Modified: 16 Apr 2026

    US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the "set host prompt" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the "host: " prompt.

    Published: 11 May 1998
    7.5
    High

    CVE-1999-1204

    Last Modified: 16 Apr 2026

    Check Point Firewall-1 does not properly handle certain restricted keywords (e.g., Mail, auth, time) in user-defined objects, which could produce a rule with a default "ANY" address and result in access to more systems than intended by the administrator.

    Published: 11 May 1998
    10
    Critical

    CVE-1999-0919

    Last Modified: 16 Apr 2026

    A memory leak in a Motorola CableRouter allows remote attackers to conduct a denial of service via a large number of telnet connections.

    Published: 10 May 1998
    10
    Critical

    CVE-1999-0816

    Last Modified: 16 Apr 2026

    The Motorola CableRouter allows any remote user to connect to and configure the router on port 1024.

    Published: 10 May 1998
    6.4
    Medium

    CVE-1999-1361

    Last Modified: 16 Apr 2026

    Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.

    Published: 9 May 1998
    4.6
    Medium

    CVE-1999-1044

    Last Modified: 16 Apr 2026

    Vulnerability in Advanced File System Utility (advfs) in Digital UNIX 4.0 through 4.0d allows local users to gain privileges.

    Published: 7 May 1998
    7.2
    High

    CVE-1999-1027

    Last Modified: 16 Apr 2026

    Solaris 2.6 HW3/98 installs admintool with world-writable permissions, which allows local users to gain privileges by replacing it with a Trojan horse program.

    Published: 7 May 1998
    7.2
    High

    CVE-1999-0126

    Last Modified: 16 Apr 2026

    SGI IRIX buffer overflow in xterm and Xaw allows root access.

    Published: 3 May 1998
    7.5
    High

    CVE-1999-0796

    Last Modified: 16 Apr 2026

    FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks.

    Published: 1 May 1998
    7.2
    High

    CVE-1999-0108

    Last Modified: 16 Apr 2026

    The printers program in IRIX has a buffer overflow that gives root access to local users.

    Published: 1 May 1998
    8.4
    High

    CVE-1999-0069

    Last Modified: 16 Apr 2026

    Solaris ufsrestore buffer overflow.

    Published: 29 Apr 1998
    7.8
    High

    CVE-1999-0212

    Last Modified: 16 Apr 2026

    Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server.

    Published: 29 Apr 1998
    7.2
    High

    CVE-1999-1106

    Last Modified: 16 Apr 2026

    Buffer overflow in kppp in KDE allows local users to gain root access via a long -c (account_name) command line argument.

    Published: 29 Apr 1998
    7.2
    High

    CVE-1999-1390

    Last Modified: 16 Apr 2026

    suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

    Published: 28 Apr 1998
    5
    Medium

    CVE-1999-1113

    Last Modified: 16 Apr 2026

    Buffer overflow in Eudora Internet Mail Server (EIMS) 2.01 and earlier on MacOS systems allows remote attackers to cause a denial of service via a long USER command to port 106.

    Published: 14 Apr 1998
    2.1
    Low

    CVE-1999-1499

    Last Modified: 16 Apr 2026

    named in ISC BIND 4.9 and 8.1 allows local users to destroy files via a symlink attack on (1) named_dump.db when root kills the process with a SIGINT, or (2) named.stats when SIGIOT is used.

    Published: 10 Apr 1998
    7.2
    High

    CVE-1999-0190

    Last Modified: 16 Apr 2026

    Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.

    Published: 8 Apr 1998
    7.5
    High

    CVE-1999-1502

    Last Modified: 16 Apr 2026

    Buffer overflows in Quake 1.9 client allows remote malicious servers to execute arbitrary commands via long (1) precache paths, (2) server name, (3) server address, or (4) argument to the map console command.

    Published: 8 Apr 1998
    5
    Medium

    CVE-1999-0010

    Last Modified: 16 Apr 2026

    Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.

    Published: 8 Apr 1998
    7.2
    High

    CVE-1999-1040

    Last Modified: 16 Apr 2026

    Vulnerabilities in (1) ipxchk and (2) ipxlink in NetWare Client 1.0 on IRIX 6.3 and 6.4 allows local users to gain root access via a modified IFS environmental variable.

    Published: 8 Apr 1998
    7.2
    High

    CVE-1999-1114

    Last Modified: 16 Apr 2026

    Buffer overflow in Korn Shell (ksh) suid_exec program on IRIX 6.x and earlier, and possibly other operating systems, allows local users to gain root privileges.

    Published: 8 Apr 1998
    4.6
    Medium

    CVE-1999-1501

    Last Modified: 16 Apr 2026

    (1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing system calls, which allows local users to execute arbitrary commands.

    Published: 8 Apr 1998
    5
    Medium

    CVE-1999-1503

    Last Modified: 16 Apr 2026

    Network Flight Recorder (NFR) 1.5 and 1.6 allows remote attackers to cause a denial of service in nfrd (crash) via a TCP packet with a null header and data field.

    Published: 8 Apr 1998
    5.4
    Medium

    CVE-1999-0011

    Last Modified: 16 Apr 2026

    Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.

    Published: 8 Apr 1998
    5
    Medium

    CVE-1999-1504

    Last Modified: 16 Apr 2026

    Stalker Internet Mail Server 1.6 allows a remote attacker to cause a denial of service (crash) via a long HELO command.

    Published: 8 Apr 1998
    10
    Critical

    CVE-1999-0009

    Last Modified: 16 Apr 2026

    Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

    Published: 8 Apr 1998
    5
    Medium

    CVE-1999-1015

    Last Modified: 16 Apr 2026

    Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.

    Published: 8 Apr 1998
    7.5
    High

    CVE-1999-1505

    Last Modified: 16 Apr 2026

    Buffer overflow in QuakeWorld 2.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary commands via a long initial connect packet.

    Published: 7 Apr 1998
    3.6
    Low

    CVE-1999-1498

    Last Modified: 16 Apr 2026

    Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a symlink attack on the reply file.

    Published: 6 Apr 1998
    5
    Medium

    CVE-1999-0270

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in pfdispaly.cgi program (sometimes referred to as "pfdisplay") for SGI's Performer API Search Tool (performer_tools) allows remote attackers to read arbitrary files.

    Published: 3 Apr 1998
    7.6
    High

    CVE-1999-1183

    Last Modified: 16 Apr 2026

    System Manager sysmgr GUI in SGI IRIX 6.4 and 6.3 allows remote attackers to execute commands by providing a trojan horse (1) runtask or (2) runexec descriptor file, which is used to execute a System Manager Task when the user's Mailcap entry supports the x-sgi-task or x-sgi-exec type.

    Published: 2 Apr 1998
    4.6
    Medium

    CVE-1999-0551

    Last Modified: 16 Apr 2026

    HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests.

    Published: 1 Apr 1998
    5
    Medium

    CVE-1999-0257

    Last Modified: 16 Apr 2026

    Nestea variation of teardrop IP fragmentation denial of service.

    Published: 1 Apr 1998
    7.5
    High

    CVE-1999-0537

    Last Modified: 16 Apr 2026

    A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc.

    Published: 1 Apr 1998
    10
    Critical

    CVE-1999-0098

    Last Modified: 16 Apr 2026

    Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.

    Published: 1 Apr 1998
    7.5
    High

    CVE-1999-0507

    Last Modified: 16 Apr 2026

    An account on a router, firewall, or other network device has a guessable password.

    Published: 1 Apr 1998
    10
    Critical

    CVE-1999-0003

    Last Modified: 16 Apr 2026

    Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).

    Published: 1 Apr 1998
    7.2
    High

    CVE-1999-0960

    Last Modified: 16 Apr 2026

    IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.

    Published: 20 Mar 1998
    5
    Medium

    CVE-1999-1075

    Last Modified: 16 Apr 2026

    inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.

    Published: 18 Mar 1998
    5
    Medium

    CVE-1999-0060

    Last Modified: 16 Apr 2026

    Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port, which is used by the Java Configurator tool.

    Published: 16 Mar 1998
    2.1
    Low

    CVE-1999-1118

    Last Modified: 16 Apr 2026

    ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.

    Published: 11 Mar 1998
    2.1
    Low

    CVE-1999-1407

    Last Modified: 16 Apr 2026

    ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file.

    Published: 9 Mar 1998
    7.2
    High

    CVE-1999-1272

    Last Modified: 16 Apr 2026

    Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0795

    Last Modified: 16 Apr 2026

    The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0266

    Last Modified: 16 Apr 2026

    The info2www CGI script allows remote file access or remote command execution.

    Published: 1 Mar 1998
    9.3
    Critical

    CVE-1999-0320

    Last Modified: 16 Apr 2026

    SunOS rpc.cmsd allows attackers to obtain root access by overwriting arbitrary files.

    Published: 1 Mar 1998
    5
    Medium

    CVE-1999-0514

    Last Modified: 16 Apr 2026

    UDP messages to broadcast addresses are allowed, allowing for a Fraggle attack that can cause a denial of service by flooding the target.

    Published: 1 Mar 1998