Total
29612 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-1999-1318 | 1 Sun | 1 Sunos | 2025-04-03 | N/A |
/usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs. | ||||
CVE-1999-1319 | 1 Sgi | 1 Irix | 2025-04-03 | N/A |
Vulnerability in object server program in SGI IRIX 5.2 through 6.1 allows remote attackers to gain root privileges in certain configurations. | ||||
CVE-1999-1321 | 1 Mit | 1 Kerberos | 2025-04-03 | N/A |
Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands via a long DNS hostname that is not properly handled during TGT ticket passing. | ||||
CVE-1999-1323 | 1 Symantec | 1 Norton Antivirus | 2025-04-03 | N/A |
Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE. | ||||
CVE-1999-1325 | 1 Vax Vms | 1 Sas System | 2025-04-03 | N/A |
SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows local users to gain privileges. | ||||
CVE-1999-1326 | 1 Washington University | 1 Wu-ftpd | 2025-04-03 | N/A |
wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files. | ||||
CVE-1999-1348 | 1 Redhat | 1 Linux | 2025-04-03 | N/A |
Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service. | ||||
CVE-1999-1350 | 1 Arcad Systemhaus | 1 Arcad | 2025-04-03 | N/A |
ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse. | ||||
CVE-1999-1351 | 1 Kvirc | 1 Irc Client | 2025-04-03 | N/A |
Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC GET request. | ||||
CVE-1999-1352 | 1 Linux | 1 Linux Kernel | 2025-04-03 | N/A |
mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. | ||||
CVE-1999-1353 | 1 Nosque | 1 Msgcore | 2025-04-03 | N/A |
Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges. | ||||
CVE-1999-1354 | 1 Softarc | 1 Firstclass Internet Server | 2025-04-03 | N/A |
E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled. | ||||
CVE-1999-1355 | 1 Compaq | 2 Insight Management Agent, Management Agents For Servers | 2025-04-03 | N/A |
BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges. | ||||
CVE-1999-1356 | 1 Compaq | 1 Smartstart | 2025-04-03 | N/A |
Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy. | ||||
CVE-1999-1367 | 1 Microsoft | 1 Internet Explorer | 2025-04-03 | N/A |
Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users. | ||||
CVE-1999-1369 | 1 Realnetworks | 1 Realserver | 2025-04-03 | N/A |
Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges. | ||||
CVE-1999-1371 | 1 Sun | 1 Sunos | 2025-04-03 | N/A |
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument. | ||||
CVE-1999-1373 | 1 Fore | 1 Powerhub Software | 2025-04-03 | N/A |
FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap. | ||||
CVE-1999-1374 | 1 Arpanet | 1 Perlshop | 2025-04-03 | N/A |
perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request. | ||||
CVE-1999-1375 | 1 Microsoft | 1 Internet Information Server | 2025-04-03 | N/A |
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter. |