CVE Feed

    Dashboard / CVE

    7.2
    High

    CVE-1999-0330

    Last Modified: 16 Apr 2026

    Linux bdash game has a buffer overflow that allows local users to gain root access.

    Published: 1 Mar 1998
    7.5
    High

    CVE-1999-0502

    Last Modified: 16 Apr 2026

    A Unix account has a default, null, blank, or missing password.

    Published: 1 Mar 1998
    1.2
    Low

    CVE-1999-1486

    Last Modified: 16 Apr 2026

    sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.

    Published: 25 Feb 1998
    2.1
    Low

    CVE-1999-1229

    Last Modified: 16 Apr 2026

    Quake 2 server 3.13 on Linux does not properly check file permissions for the config.cfg configuration file, which allows local users to read arbitrary files via a symlink from config.cfg to the target file.

    Published: 25 Feb 1998
    5
    Medium

    CVE-1999-0290

    Last Modified: 16 Apr 2026

    The WinGate telnet proxy allows remote attackers to cause a denial of service via a large number of connections to localhost.

    Published: 21 Feb 1998
    7.5
    High

    CVE-1999-1273

    Last Modified: 16 Apr 2026

    Squid Internet Object Cache 1.1.20 allows users to bypass access control lists (ACLs) by encoding the URL with hexadecimal escape sequences.

    Published: 20 Feb 1998
    10
    Critical

    CVE-1999-0323

    Last Modified: 16 Apr 2026

    FreeBSD mmap function allows users to modify append-only or immutable files.

    Published: 20 Feb 1998
    7.5
    High

    CVE-1999-1207

    Last Modified: 16 Apr 2026

    Buffer overflow in web-admin tool in NetXRay 2.6 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request.

    Published: 18 Feb 1998
    5
    Medium

    CVE-1999-0225

    Last Modified: 16 Apr 2026

    Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed SMB logon request in which the actual data size does not match the specified size.

    Published: 14 Feb 1998
    5
    Medium

    CVE-1999-0258

    Last Modified: 16 Apr 2026

    Bonk variation of teardrop IP fragmentation denial of service.

    Published: 13 Feb 1998
    7
    High

    CVE-1999-0012

    Last Modified: 16 Apr 2026

    Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.

    Published: 6 Feb 1998
    2.1
    Low

    CVE-1999-1269

    Last Modified: 16 Apr 2026

    Screen savers in KDE beta 3 allows local users to overwrite arbitrary files via a symlink attack on the .kss.pid file.

    Published: 6 Feb 1998
    5
    Medium

    CVE-1999-1445

    Last Modified: 16 Apr 2026

    Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.

    Published: 2 Feb 1998
    7.2
    High

    CVE-1999-0304

    Last Modified: 16 Apr 2026

    mmap function in BSD allows local attackers in the kmem group to modify memory through devices.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0305

    Last Modified: 16 Apr 2026

    The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.

    Published: 1 Feb 1998
    7.5
    High

    CVE-1999-0256

    Last Modified: 16 Apr 2026

    Buffer overflow in War FTP allows remote execution of commands.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0486

    Last Modified: 16 Apr 2026

    Denial of service in AOL Instant Messenger when a remote attacker sends a malicious hyperlink to the receiving client, potentially causing a system crash.

    Published: 1 Feb 1998
    7.2
    High

    CVE-1999-0296

    Last Modified: 16 Apr 2026

    Solaris volrmmount program allows attackers to read any file.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0087

    Last Modified: 16 Apr 2026

    Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.

    Published: 1 Feb 1998
    5
    Medium

    CVE-1999-0264

    Last Modified: 16 Apr 2026

    htmlscript CGI program allows remote read access to files.

    Published: 27 Jan 1998
    4.6
    Medium

    CVE-1999-0125

    Last Modified: 16 Apr 2026

    Buffer overflow in SGI IRIX mailx program.

    Published: 25 Jan 1998
    8.4
    High

    CVE-1999-0013

    Last Modified: 16 Apr 2026

    Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent user.

    Published: 22 Jan 1998
    7.2
    High

    CVE-1999-0014

    Last Modified: 16 Apr 2026

    Unauthorized privileged access or denial of service via dtappgather program in CDE.

    Published: 21 Jan 1998
    7.2
    High

    CVE-1999-1487

    Last Modified: 16 Apr 2026

    Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.

    Published: 21 Jan 1998
    7.8
    High

    CVE-1999-1045

    Last Modified: 16 Apr 2026

    pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malformed request.

    Published: 15 Jan 1998
    5
    Medium

    CVE-1999-0271

    Last Modified: 16 Apr 2026

    Progressive Networks Real Video server (pnserver) can be crashed remotely.

    Published: 15 Jan 1998
    7.2
    High

    CVE-1999-0958

    Last Modified: 16 Apr 2026

    sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack.

    Published: 12 Jan 1998
    7.2
    High

    CVE-1999-1176

    Last Modified: 16 Apr 2026

    Buffer overflow in cidentd ident daemon allows local users to gain root privileges via a long line in the .authlie script.

    Published: 10 Jan 1998
    5
    Medium

    CVE-1999-0086

    Last Modified: 16 Apr 2026

    AIX routed allows remote users to modify sensitive files.

    Published: 8 Jan 1998
    2.1
    Low

    CVE-1999-1429

    Last Modified: 16 Apr 2026

    DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to damage disks through the ff device driver.

    Published: 5 Jan 1998
    5
    Medium

    CVE-1999-0513

    Last Modified: 16 Apr 2026

    ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.

    Published: 5 Jan 1998
    2.1
    Low

    CVE-1999-1439

    Last Modified: 16 Apr 2026

    gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.

    Published: 2 Jan 1998
    5
    Medium

    CVE-1999-0273

    Last Modified: 16 Apr 2026

    Denial of service through Solaris 2.5.1 telnet by sending ^D characters.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0239

    Last Modified: 16 Apr 2026

    Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.

    Published: 1 Jan 1998
    4.6
    Medium

    CVE-1999-0114

    Last Modified: 16 Apr 2026

    Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-2.4 mail package using a symlink attack.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0331

    Last Modified: 16 Apr 2026

    Buffer overflow in Internet Explorer 4.0(1).

    Published: 1 Jan 1998
    7.2
    High

    CVE-1999-0341

    Last Modified: 16 Apr 2026

    Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0293

    Last Modified: 16 Apr 2026

    AAA authentication on Cisco systems allows attackers to execute commands without authorization.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0279

    Last Modified: 16 Apr 2026

    Excite for Web Servers (EWS) allows remote command execution via shell metacharacters.

    Published: 1 Jan 1998
    7.5
    High

    CVE-1999-0284

    Last Modified: 16 Apr 2026

    Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.

    Published: 1 Jan 1998
    5
    Medium

    CVE-1999-0107

    Last Modified: 16 Apr 2026

    Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters.

    Published: 30 Dec 1997
    6.4
    Medium

    CVE-1999-1274

    Last Modified: 16 Apr 2026

    iPass RoamServer 3.1 creates temporary files with world-writable permissions.

    Published: 29 Dec 1997
    5
    Medium

    CVE-1999-1230

    Last Modified: 16 Apr 2026

    Quake 2 server allows remote attackers to cause a denial of service via a spoofed UDP packet with a source address of 127.0.0.1, which causes the server to attempt to connect to itself.

    Published: 24 Dec 1997
    5
    Medium

    CVE-1999-1581

    Last Modified: 16 Apr 2026

    Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allows remote attackers to cause a denial of service (memory consumption) via a large number of SNMP packets with Object Identifiers (OIDs) that cannot be decoded.

    Published: 23 Dec 1997
    5
    Medium

    CVE-1999-0015

    Last Modified: 16 Apr 2026

    Teardrop IP denial of service.

    Published: 16 Dec 1997
    5
    Medium

    CVE-1999-0104

    Last Modified: 16 Apr 2026

    A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.

    Published: 16 Dec 1997
    5
    Medium

    CVE-1999-0004

    Last Modified: 16 Apr 2026

    MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.

    Published: 16 Dec 1997
    5
    Medium

    CVE-1999-0230

    Last Modified: 16 Apr 2026

    Buffer overflow in Cisco 7xx routers through the telnet service.

    Published: 15 Dec 1997
    7.2
    High

    CVE-1999-1140

    Last Modified: 16 Apr 2026

    Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.

    Published: 14 Dec 1997
    7.5
    High

    CVE-1999-0017

    Last Modified: 16 Apr 2026

    FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.

    Published: 10 Dec 1997