CVE Feed

    Dashboard / CVE

    2.1
    Low

    CVE-1999-0223

    Last Modified: 16 Apr 2026

    Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0221

    Last Modified: 16 Apr 2026

    Denial of service of Ascend routers through port 150 (remote administration).

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0419

    Last Modified: 16 Apr 2026

    When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and repeatedly attempts to redeliver the message, causing a denial of service.

    Published: 1 Mar 1999
    7.5
    High

    CVE-1999-0429

    Last Modified: 16 Apr 2026

    The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set the "Encrypt Saved Mail" preference.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0430

    Last Modified: 16 Apr 2026

    Cisco Catalyst LAN switches running Catalyst 5000 supervisor software allows remote attackers to perform a denial of service by forcing the supervisor module to reload.

    Published: 1 Mar 1999
    4.6
    Medium

    CVE-1999-0436

    Last Modified: 16 Apr 2026

    Domain Enterprise Server Management System (DESMS) in HP-UX allows local users to gain privileges.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0437

    Last Modified: 16 Apr 2026

    Remote attackers can perform a denial of service in WebRamp systems by sending a malicious string to the HTTP port.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0479

    Last Modified: 16 Apr 2026

    Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.

    Published: 1 Mar 1999
    10
    Critical

    CVE-1999-1046

    Last Modified: 16 Apr 2026

    Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 8181.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0386

    Last Modified: 16 Apr 2026

    Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL.

    Published: 1 Mar 1999
    4.6
    Medium

    CVE-1999-0432

    Last Modified: 16 Apr 2026

    ftp on HP-UX 11.00 allows local users to gain privileges.

    Published: 1 Mar 1999
    7.2
    High

    CVE-1999-0435

    Last Modified: 16 Apr 2026

    MC/ServiceGuard and MC/LockManager in HP-UX allows local users to gain privileges through SAM.

    Published: 1 Mar 1999
    7.2
    High

    CVE-1999-0476

    Last Modified: 16 Apr 2026

    A weak encryption algorithm is used for passwords in SCO TermVision, allowing them to be easily decrypted by a local user.

    Published: 1 Mar 1999
    1.2
    Low

    CVE-2000-0371

    Last Modified: 16 Apr 2026

    The libmediatool library used for the KDE mediatool allows local users to create arbitrary files via a symlink attack.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0414

    Last Modified: 16 Apr 2026

    In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0431

    Last Modified: 16 Apr 2026

    Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.

    Published: 1 Mar 1999
    7.5
    High

    CVE-1999-0440

    Last Modified: 16 Apr 2026

    The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0261

    Last Modified: 16 Apr 2026

    Netmanager Chameleon SMTPd has several buffer overflows that cause a crash.

    Published: 1 Mar 1999
    9.8
    Critical

    CVE-1999-0426

    Last Modified: 16 Apr 2026

    The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.

    Published: 1 Mar 1999
    5
    Medium

    CVE-1999-0438

    Last Modified: 16 Apr 2026

    Remote attackers can perform a denial of service in WebRamp systems by sending a malicious UDP packet to port 5353, changing its IP address.

    Published: 1 Mar 1999
    7.2
    High

    CVE-1999-0413

    Last Modified: 16 Apr 2026

    A buffer overflow in the SGI X server allows local users to gain root access through the X server font path.

    Published: 1 Mar 1999
    7.2
    High

    CVE-1999-0381

    Last Modified: 16 Apr 2026

    super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access.

    Published: 26 Feb 1999
    10
    Critical

    CVE-1999-0408

    Last Modified: 16 Apr 2026

    Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.

    Published: 25 Feb 1999
    4.6
    Medium

    CVE-1999-0380

    Last Modified: 16 Apr 2026

    SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user's Finger File to point to the target file, then running finger on the user.

    Published: 25 Feb 1999
    2.1
    Low

    CVE-1999-0483

    Last Modified: 16 Apr 2026

    OpenBSD crash using nlink value in FFS and EXT2FS filesystems.

    Published: 25 Feb 1999
    7.2
    High

    CVE-1999-1247

    Last Modified: 16 Apr 2026

    Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.

    Published: 24 Feb 1999
    2.1
    Low

    CVE-1999-0484

    Last Modified: 16 Apr 2026

    Buffer overflow in OpenBSD ping.

    Published: 23 Feb 1999
    5
    Medium

    CVE-1999-0378

    Last Modified: 16 Apr 2026

    InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands.

    Published: 22 Feb 1999
    7.5
    High

    CVE-1999-0379

    Last Modified: 16 Apr 2026

    Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripting.

    Published: 22 Feb 1999
    5
    Medium

    CVE-1999-0377

    Last Modified: 16 Apr 2026

    Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services.

    Published: 22 Feb 1999
    5
    Medium

    CVE-1999-0441

    Last Modified: 16 Apr 2026

    Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service.

    Published: 22 Feb 1999
    10
    Critical

    CVE-1999-1049

    Last Modified: 16 Apr 2026

    ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

    Published: 21 Feb 1999
    4.6
    Medium

    CVE-1999-0376

    Last Modified: 16 Apr 2026

    Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.

    Published: 20 Feb 1999
    7.2
    High

    CVE-1999-1168

    Last Modified: 16 Apr 2026

    install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change the permissions of arbitrary files via a symlink attack on a temporary file.

    Published: 20 Feb 1999
    4.6
    Medium

    CVE-1999-1101

    Last Modified: 16 Apr 2026

    Kabsoftware Lydia utility uses weak encryption to store user passwords in the lydia.ini file, which allows local users to easily decrypt the passwords and gain privileges.

    Published: 19 Feb 1999
    7.2
    High

    CVE-1999-1482

    Last Modified: 16 Apr 2026

    SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes.

    Published: 19 Feb 1999
    2.1
    Low

    CVE-1999-0460

    Last Modified: 16 Apr 2026

    Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.

    Published: 19 Feb 1999
    4.6
    Medium

    CVE-1999-1372

    Last Modified: 16 Apr 2026

    Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

    Published: 19 Feb 1999
    7.2
    High

    CVE-1999-0406

    Last Modified: 16 Apr 2026

    Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege.

    Published: 19 Feb 1999
    7.5
    High

    CVE-1999-0412

    Last Modified: 16 Apr 2026

    In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.

    Published: 19 Feb 1999
    2.6
    Low

    CVE-1999-0485

    Last Modified: 16 Apr 2026

    Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.

    Published: 19 Feb 1999
    5
    Medium

    CVE-1999-1255

    Last Modified: 16 Apr 2026

    Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter.

    Published: 19 Feb 1999
    7.2
    High

    CVE-1999-0405

    Last Modified: 16 Apr 2026

    A buffer overflow in lsof allows local users to obtain root privilege.

    Published: 18 Feb 1999
    2.1
    Low

    CVE-1999-1495

    Last Modified: 16 Apr 2026

    xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file.

    Published: 18 Feb 1999
    7.2
    High

    CVE-2000-0367

    Last Modified: 16 Apr 2026

    Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.

    Published: 18 Feb 1999
    10
    Critical

    CVE-1999-1405

    Last Modified: 16 Apr 2026

    snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.

    Published: 17 Feb 1999
    2.6
    Low

    CVE-1999-0396

    Last Modified: 16 Apr 2026

    A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial of service.

    Published: 17 Feb 1999
    5
    Medium

    CVE-1999-1060

    Last Modified: 16 Apr 2026

    Buffer overflow in Tetrix TetriNet daemon 1.13.16 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by connecting to port 31457 from a host with a long DNS hostname.

    Published: 17 Feb 1999
    2.1
    Low

    CVE-1999-0374

    Last Modified: 16 Apr 2026

    Debian GNU/Linux cfengine package is susceptible to a symlink attack.

    Published: 16 Feb 1999
    7.5
    High

    CVE-1999-0375

    Last Modified: 16 Apr 2026

    Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands.

    Published: 16 Feb 1999