CVE-1999-1298
Last Modified: 16 Apr 2026Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and with /bin/date as the shell, which could allow attackers to gain access to certain system resources.
CVE-1999-1387
Last Modified: 16 Apr 2026Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.
CVE-1999-0315
Last Modified: 16 Apr 2026Buffer overflow in Solaris fdformat command gives root access to local users.
CVE-1999-0280
Last Modified: 16 Apr 2026Remote command execution in Microsoft Internet Explorer using .lnk and .url files.
CVE-1999-0292
Last Modified: 16 Apr 2026Denial of service through Winpopup using large user names.
CVE-1999-1525
Last Modified: 16 Apr 2026Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie.
CVE-1999-1408
Last Modified: 16 Apr 2026Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a socket to connect to a port on the localhost, calling shutdown to clear the socket, then using the same socket to connect to a different port on localhost.
CVE-1999-0299
Last Modified: 16 Apr 2026Buffer overflow in FreeBSD lpd through long DNS hostnames.
CVE-1999-1489
Last Modified: 16 Apr 2026Buffer overflow in TestChip function in XFree86 SuperProbe in Slackware Linux 3.1 allows local users to gain root privileges via a long -nopr argument.
CVE-1999-0106
Last Modified: 16 Apr 2026Finger redirection allows finger bombs.
CVE-1999-0612
Last Modified: 16 Apr 2026A version of finger is running that exposes valid user information to any entity on the network.
CVE-1999-0165
Last Modified: 16 Apr 2026NFS cache poisoning.
CVE-1999-1128
Last Modified: 16 Apr 2026Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.
CVE-1999-0318
Last Modified: 16 Apr 2026Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
CVE-1999-0105
Last Modified: 16 Apr 2026finger allows recursive searches by using a long string of @ symbols.
CVE-1999-0868
Last Modified: 16 Apr 2026ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.
CVE-1999-0041
Last Modified: 16 Apr 2026Buffer overflow in NLS (Natural Language Service).
CVE-1999-0109
Last Modified: 16 Apr 2026Buffer overflow in ffbconfig in Solaris 2.5.1.
CVE-1999-0228
Last Modified: 16 Apr 2026Denial of service in RPCSS.EXE program (RPC Locator) in Windows NT.
CVE-1999-0046
Last Modified: 16 Apr 2026Buffer overflow of rlogin program using TERM environmental variable.
CVE-1999-0298
Last Modified: 16 Apr 2026ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.
CVE-1999-1299
Last Modified: 16 Apr 2026rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.
CVE-1999-1160
Last Modified: 16 Apr 2026Vulnerability in ftpd/kftpd in HP-UX 10.x and 9.x allows local and possibly remote users to gain root privileges.
CVE-1999-0369
Last Modified: 16 Apr 2026The Sun sdtcm_convert calendar utility for OpenWindows has a buffer overflow which can gain root access.
CVE-1999-0959
Last Modified: 16 Apr 2026IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.
CVE-1999-0309
Last Modified: 16 Apr 2026HP-UX vgdisplay program gives root access to local users.
CVE-1999-0174
Last Modified: 16 Apr 2026The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-1999-1144
Last Modified: 16 Apr 2026Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges.
CVE-1999-0047
Last Modified: 16 Apr 2026MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
CVE-1999-0048
Last Modified: 16 Apr 2026Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
CVE-1999-0966
Last Modified: 16 Apr 2026Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].
CVE-1999-0081
Last Modified: 16 Apr 2026wu-ftp allows files to be overwritten via the rnfr command.
CVE-1999-1088
Last Modified: 16 Apr 2026Vulnerability in chsh command in HP-UX 9.X through 10.20 allows local users to gain privileges.
CVE-1999-0049
Last Modified: 16 Apr 2026Csetup under IRIX allows arbitrary file creation or overwriting.
CVE-1999-1311
Last Modified: 16 Apr 2026Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges.
CVE-1999-1145
Last Modified: 16 Apr 2026Vulnerability in Glance programs in GlancePlus for HP-UX 10.20 and earlier allows local users to access arbitrary files and gain privileges.
CVE-1999-0051
Last Modified: 16 Apr 2026Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.
CVE-1999-1249
Last Modified: 16 Apr 2026movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges.
CVE-1999-1120
Last Modified: 16 Apr 2026netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable program, which allows local users to gain privileges.
CVE-1999-0517
Last Modified: 28 May 2026An SNMP community name is the default (e.g. public), null, or missing.
CVE-1999-0345
Last Modified: 16 Apr 2026Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
CVE-1999-0100
Last Modified: 16 Apr 2026Remote access in AIX innd 1.5.1, using control messages.
CVE-1999-0166
Last Modified: 16 Apr 2026NFS allows users to use a "cd .." command to access other directories besides the exported file system.
CVE-1999-0163
Last Modified: 16 Apr 2026In older versions of Sendmail, an attacker could use a pipe character to execute root commands.
CVE-1999-0173
Last Modified: 16 Apr 2026FormMail CGI program can be used by web servers other than the host server that the program resides on.
CVE-1999-0504
Last Modified: 16 Apr 2026A Windows NT local user or administrator account has a default, null, blank, or missing password.
CVE-1999-0499
Last Modified: 16 Apr 2026NETBIOS share information may be published through SNMP registry keys in NT.
CVE-1999-0525
Last Modified: 16 Apr 2026IP traceroute is allowed from arbitrary hosts.
CVE-1999-0535
Last Modified: 16 Apr 2026A Windows NT account policy for passwords has inappropriate, security-critical settings, e.g. for password length, password age, or uniqueness.
CVE-1999-0550
Last Modified: 16 Apr 2026A router's routing tables can be obtained from arbitrary hosts.
