CVE Feed

    Dashboard / CVE

    2.1
    Low

    CVE-1999-0105

    Last Modified: 16 Apr 2026

    finger allows recursive searches by using a long string of @ symbols.

    Published: 1 Mar 1997
    7.2
    High

    CVE-1999-0868

    Last Modified: 16 Apr 2026

    ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.

    Published: 20 Feb 1997
    7.5
    High

    CVE-1999-0041

    Last Modified: 16 Apr 2026

    Buffer overflow in NLS (Natural Language Service).

    Published: 13 Feb 1997
    7.2
    High

    CVE-1999-0109

    Last Modified: 16 Apr 2026

    Buffer overflow in ffbconfig in Solaris 2.5.1.

    Published: 10 Feb 1997
    5
    Medium

    CVE-1999-0228

    Last Modified: 16 Apr 2026

    Denial of service in RPCSS.EXE program (RPC Locator) in Windows NT.

    Published: 7 Feb 1997
    10
    Critical

    CVE-1999-0046

    Last Modified: 16 Apr 2026

    Buffer overflow of rlogin program using TERM environmental variable.

    Published: 6 Feb 1997
    7.5
    High

    CVE-1999-0298

    Last Modified: 16 Apr 2026

    ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.

    Published: 5 Feb 1997
    10
    Critical

    CVE-1999-1299

    Last Modified: 16 Apr 2026

    rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.

    Published: 3 Feb 1997
    10
    Critical

    CVE-1999-1160

    Last Modified: 16 Apr 2026

    Vulnerability in ftpd/kftpd in HP-UX 10.x and 9.x allows local and possibly remote users to gain root privileges.

    Published: 2 Feb 1997
    7.2
    High

    CVE-1999-0369

    Last Modified: 16 Apr 2026

    The Sun sdtcm_convert calendar utility for OpenWindows has a buffer overflow which can gain root access.

    Published: 1 Feb 1997
    7.2
    High

    CVE-1999-0959

    Last Modified: 16 Apr 2026

    IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.

    Published: 1 Feb 1997
    7.2
    High

    CVE-1999-0309

    Last Modified: 16 Apr 2026

    HP-UX vgdisplay program gives root access to local users.

    Published: 1 Feb 1997
    6.4
    Medium

    CVE-1999-0174

    Last Modified: 16 Apr 2026

    The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.

    Published: 1 Feb 1997
    7.2
    High

    CVE-1999-1144

    Last Modified: 16 Apr 2026

    Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges.

    Published: 30 Jan 1997
    10
    Critical

    CVE-1999-0047

    Last Modified: 16 Apr 2026

    MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.

    Published: 28 Jan 1997
    10
    Critical

    CVE-1999-0048

    Last Modified: 16 Apr 2026

    Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.

    Published: 27 Jan 1997
    7.2
    High

    CVE-1999-0966

    Last Modified: 16 Apr 2026

    Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].

    Published: 27 Jan 1997
    5
    Medium

    CVE-1999-0081

    Last Modified: 16 Apr 2026

    wu-ftp allows files to be overwritten via the rnfr command.

    Published: 11 Jan 1997
    7.2
    High

    CVE-1999-1088

    Last Modified: 16 Apr 2026

    Vulnerability in chsh command in HP-UX 9.X through 10.20 allows local users to gain privileges.

    Published: 9 Jan 1997
    7.2
    High

    CVE-1999-0049

    Last Modified: 16 Apr 2026

    Csetup under IRIX allows arbitrary file creation or overwriting.

    Published: 8 Jan 1997
    4.6
    Medium

    CVE-1999-1311

    Last Modified: 16 Apr 2026

    Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges.

    Published: 7 Jan 1997
    7.2
    High

    CVE-1999-1145

    Last Modified: 16 Apr 2026

    Vulnerability in Glance programs in GlancePlus for HP-UX 10.20 and earlier allows local users to access arbitrary files and gain privileges.

    Published: 7 Jan 1997
    7.2
    High

    CVE-1999-0051

    Last Modified: 16 Apr 2026

    Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.

    Published: 6 Jan 1997
    4.6
    Medium

    CVE-1999-1249

    Last Modified: 16 Apr 2026

    movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges.

    Published: 6 Jan 1997
    4.6
    Medium

    CVE-1999-1120

    Last Modified: 16 Apr 2026

    netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable program, which allows local users to gain privileges.

    Published: 4 Jan 1997
    5.9
    Medium

    CVE-1999-0517

    Last Modified: 28 May 2026

    An SNMP community name is the default (e.g. public), null, or missing.

    Published: 1 Jan 1997
    5
    Medium

    CVE-1999-0345

    Last Modified: 16 Apr 2026

    Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.

    Published: 1 Jan 1997
    10
    Critical

    CVE-1999-0100

    Last Modified: 16 Apr 2026

    Remote access in AIX innd 1.5.1, using control messages.

    Published: 1 Jan 1997
    5
    Medium

    CVE-1999-0166

    Last Modified: 16 Apr 2026

    NFS allows users to use a "cd .." command to access other directories besides the exported file system.

    Published: 1 Jan 1997
    7.2
    High

    CVE-1999-0163

    Last Modified: 16 Apr 2026

    In older versions of Sendmail, an attacker could use a pipe character to execute root commands.

    Published: 1 Jan 1997
    5
    Medium

    CVE-1999-0173

    Last Modified: 16 Apr 2026

    FormMail CGI program can be used by web servers other than the host server that the program resides on.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0504

    Last Modified: 16 Apr 2026

    A Windows NT local user or administrator account has a default, null, blank, or missing password.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0499

    Last Modified: 16 Apr 2026

    NETBIOS share information may be published through SNMP registry keys in NT.

    Published: 1 Jan 1997
    0
    Low

    CVE-1999-0525

    Last Modified: 16 Apr 2026

    IP traceroute is allowed from arbitrary hosts.

    Published: 1 Jan 1997
    10
    Critical

    CVE-1999-0535

    Last Modified: 16 Apr 2026

    A Windows NT account policy for passwords has inappropriate, security-critical settings, e.g. for password length, password age, or uniqueness.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0550

    Last Modified: 16 Apr 2026

    A router's routing tables can be obtained from arbitrary hosts.

    Published: 1 Jan 1997
    9.3
    Critical

    CVE-1999-0572

    Last Modified: 16 Apr 2026

    .reg files are associated with the Windows NT registry editor (regedit), making the registry susceptible to Trojan Horse attacks.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0576

    Last Modified: 16 Apr 2026

    A Windows NT system's file audit policy does not log an event success or failure for security-critical files or directories.

    Published: 1 Jan 1997
    0
    Low

    CVE-1999-0626

    Last Modified: 16 Apr 2026

    A version of rusers is running that exposes valid user information to any entity on the network.

    Published: 1 Jan 1997
    6.4
    Medium

    CVE-1999-0201

    Last Modified: 16 Apr 2026

    A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.

    Published: 1 Jan 1997
    5
    Medium

    CVE-1999-0217

    Last Modified: 16 Apr 2026

    Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.

    Published: 1 Jan 1997
    7.2
    High

    CVE-1999-0249

    Last Modified: 16 Apr 2026

    Windows NT RSHSVC program allows remote users to execute arbitrary commands.

    Published: 1 Jan 1997
    5
    Medium

    CVE-1999-0265

    Last Modified: 16 Apr 2026

    ICMP redirect messages may crash or lock up a host.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0510

    Last Modified: 16 Apr 2026

    A router or firewall allows source routed packets from arbitrary hosts.

    Published: 1 Jan 1997
    4.6
    Medium

    CVE-1999-0534

    Last Modified: 16 Apr 2026

    A Windows NT user has inappropriate rights or privileges, e.g. Act as System, Add Workstation, Backup, Change System Time, Create Pagefile, Create Permanent Object, Create Token Name, Debug, Generate Security Audit, Increase Priority, Increase Quota, Load Driver, Lock Memory, Profile Single Process, Remote Shutdown, Replace Process Token, Restore, System Environment, Take Ownership, or Unsolicited Input.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0575

    Last Modified: 16 Apr 2026

    A Windows NT system's user audit policy does not log an event success or failure, e.g. for Logon and Logoff, File and Object Access, Use of User Rights, User and Group Management, Security Policy Changes, Restart, Shutdown, and System, and Process Tracking.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0180

    Last Modified: 16 Apr 2026

    in.rshd allows users to login with a NULL username and execute commands.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0202

    Last Modified: 16 Apr 2026

    The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0236

    Last Modified: 16 Apr 2026

    ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.

    Published: 1 Jan 1997
    7.5
    High

    CVE-1999-0518

    Last Modified: 16 Apr 2026

    A NETBIOS/SMB share password is guessable.

    Published: 1 Jan 1997