CVE-1999-0196
Last Modified: 16 Apr 2026websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver parameter ($VAR_receiver variable).
CVE-1999-1326
Last Modified: 16 Apr 2026wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files.
CVE-1999-0169
Last Modified: 16 Apr 2026NFS allows attackers to read and write any file on the system by specifying a false UID.
CVE-1999-0250
Last Modified: 16 Apr 2026Denial of service in Qmail through long SMTP commands.
CVE-1999-0195
Last Modified: 16 Apr 2026Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1.
CVE-1999-0153
Last Modified: 16 Apr 2026Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
CVE-1999-0074
Last Modified: 16 Apr 2026Listening TCP ports are sequentially allocated, allowing spoofing attacks.
CVE-1999-0541
Last Modified: 16 Apr 2026A password for accessing a WWW URL is guessable.
CVE-1999-0532
Last Modified: 16 Apr 2026A DNS server allows zone transfers.
CVE-1999-0526
Last Modified: 16 Apr 2026An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.
CVE-1999-0111
Last Modified: 16 Apr 2026RIP v1 is susceptible to spoofing.
CVE-1999-0147
Last Modified: 16 Apr 2026The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.
CVE-1999-0156
Last Modified: 16 Apr 2026wu-ftpd FTP daemon allows any user and password combination.
CVE-1999-0184
Last Modified: 16 Apr 2026When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records.
CVE-1999-0533
Last Modified: 16 Apr 2026A DNS server allows inverse queries.
CVE-1999-0628
Last Modified: 16 Apr 2026The rwho/rwhod service is running, which exposes machine status and user information.
CVE-1999-0076
Last Modified: 16 Apr 2026Buffer overflow in wu-ftp from PASV command causes a core dump.
CVE-1999-0150
Last Modified: 16 Apr 2026The Perl fingerd program allows arbitrary command execution from remote users.
CVE-1999-0219
Last Modified: 16 Apr 2026Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1) CWD or (2) LS (list) command.
CVE-1999-1423
Last Modified: 16 Apr 2026ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.
CVE-1999-1192
Last Modified: 16 Apr 2026Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
CVE-1999-1483
Last Modified: 16 Apr 2026Buffer overflow in zgv in svgalib 1.2.10 and earlier allows local users to execute arbitrary code via a long HOME environment variable.
CVE-1999-0957
Last Modified: 16 Apr 2026MajorCool mj_key_cache program allows local users to modify files via a symlink attack.
CVE-1999-1266
Last Modified: 16 Apr 2026rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.
CVE-1999-0033
Last Modified: 16 Apr 2026Command execution in Sun systems via buffer overflow in the at program.
CVE-1999-0083
Last Modified: 16 Apr 2026getcwd() file descriptor leak in FTP.
CVE-1999-0275
Last Modified: 16 Apr 2026Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.
CVE-1999-0189
Last Modified: 16 Apr 2026Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111.
CVE-1999-0227
Last Modified: 16 Apr 2026Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.
CVE-1999-0799
Last Modified: 16 Apr 2026Buffer overflow in bootpd 2.4.3 and earlier via a long boot file location.
CVE-1999-0281
Last Modified: 16 Apr 2026Denial of service in IIS using long URLs.
CVE-1999-0144
Last Modified: 16 Apr 2026Denial of service in Qmail by specifying a large number of recipients with the RCPT command.
CVE-1999-0034
Last Modified: 16 Apr 2026Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
CVE-1999-0035
Last Modified: 16 Apr 2026Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.
CVE-1999-1143
Last Modified: 16 Apr 2026Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.
CVE-1999-0064
Last Modified: 16 Apr 2026Buffer overflow in AIX lquerylv program gives root access to local users.
CVE-1999-0036
Last Modified: 16 Apr 2026IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
CVE-1999-0259
Last Modified: 16 Apr 2026cfingerd lists all users on a system via search.**@target.
CVE-1999-0037
Last Modified: 16 Apr 2026Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.
CVE-1999-1191
Last Modified: 16 Apr 2026Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
CVE-1999-1449
Last Modified: 16 Apr 2026SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.
CVE-1999-1402
Last Modified: 16 Apr 2026The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
CVE-1999-1232
Last Modified: 16 Apr 2026Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.
CVE-1999-1141
Last Modified: 16 Apr 2026Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.
CVE-1999-0962
Last Modified: 16 Apr 2026Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.
CVE-1999-1158
Last Modified: 16 Apr 2026Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd.
CVE-1999-1184
Last Modified: 16 Apr 2026Buffer overflow in Elm 2.4 and earlier allows local users to gain privileges via a long TERM environmental variable.
CVE-1999-1410
Last Modified: 16 Apr 2026addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.
CVE-1999-1286
Last Modified: 16 Apr 2026addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file.
CVE-1999-1398
Last Modified: 16 Apr 2026Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.
