Vulnerabilites CVE
Base de donnees CVE enrichie avec CISA KEV et NVD
| CVE ID | CVSS | Severite | KEV | Observations |
|---|---|---|---|---|
| CVE-1999-0268 MetaInfo MetaWeb web server allows users to upload, execute, and read scripts. | N/A | NONE | — | 0 |
| CVE-1999-0276 mSQL v2.0.1 and below allows remote execution through a buffer overflow. | N/A | NONE | — | 0 |
| CVE-1999-0283 The Java Web Server would allow remote users to obtain the source code for CGI programs. | N/A | NONE | — | 0 |
| CVE-1999-0285 Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection. | N/A | NONE | — | 0 |
| CVE-1999-0286 In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages. | N/A | NONE | — | 0 |
| CVE-1999-0355 Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service. | N/A | NONE | — | 0 |
| CVE-1999-0361 NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logging. | N/A | NONE | — | 0 |
| CVE-1999-0364 Microsoft Access 97 stores a database password as plaintext in a foreign mdb, allowing access to data. | N/A | NONE | — | 0 |
| CVE-1999-0384 The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content. | N/A | NONE | — | 0 |
| CVE-1999-0388 DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute commands as root. | N/A | NONE | — | 0 |
| CVE-1999-0393 Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of headers. | N/A | NONE | — | 0 |
| CVE-1999-0394 DPEC Online Courseware allows an attacker to change another user's password without knowing the original password. | N/A | NONE | — | 0 |
| CVE-1999-0395 A race condition in the BackWeb Polite Agent Protocol allows an attacker to spoof a BackWeb server. | N/A | NONE | — | 0 |
| CVE-1999-0397 The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext. | N/A | NONE | — | 0 |
| CVE-1999-0398 In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login. | N/A | NONE | — | 0 |
| CVE-1999-0399 The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attackers to place a malicious file in a different location, possibly allowing the att... | N/A | NONE | — | 0 |
| CVE-1999-0401 A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files. | N/A | NONE | — | 0 |
| CVE-1999-0448 IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request. | N/A | NONE | — | 0 |
| CVE-1999-0452 A service or application has a backdoor password that was placed there by the developer. | N/A | NONE | — | 0 |
| CVE-1999-0453 An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol (CDP). | N/A | NONE | — | 0 |
| CVE-1999-0454 A remote attacker can sometimes identify the operating system of a host based on how it reacts to some IP or ICMP packets, using a tool such as nmap or queso. | N/A | NONE | — | 0 |
| CVE-1999-0465 Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter. | N/A | NONE | — | 0 |
| CVE-1999-0495 A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares. | N/A | NONE | — | 0 |
| CVE-1999-0512 A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers. | N/A | NONE | — | 0 |
| CVE-1999-0515 An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv. | N/A | NONE | — | 0 |
| CVE-1999-0520 A system-critical NETBIOS/SMB share has inappropriate access control. | N/A | NONE | — | 0 |
| CVE-1999-0523 ICMP echo (ping) is allowed from arbitrary hosts. | N/A | NONE | — | 0 |
| CVE-1999-0527 The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory is writeable by world, a real password file is obtainable, or executable comman... | N/A | NONE | — | 0 |
| CVE-1999-0528 A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of. | N/A | NONE | — | 0 |
| CVE-1999-0530 A system is operating in "promiscuous" mode which allows it to perform packet sniffing. | N/A | NONE | — | 0 |
| CVE-1999-0539 A trust relationship exists between two Unix hosts. | N/A | NONE | — | 0 |
| CVE-1999-0547 An SSH server allows authentication through the .rhosts file. | N/A | NONE | — | 0 |
| CVE-1999-0548 A superfluous NFS server is running, but it is not importing or exporting any file systems. | N/A | NONE | — | 0 |
| CVE-1999-0554 NFS exports system-critical data to the world, e.g. / or a password file. | N/A | NONE | — | 0 |
| CVE-1999-0555 A Unix account with a name other than "root" has UID 0, i.e. root privileges. | N/A | NONE | — | 0 |
| CVE-1999-0556 Two or more Unix accounts have the same UID. | N/A | NONE | — | 0 |
| CVE-1999-0560 A system-critical Windows NT file or directory has inappropriate permissions. | N/A | NONE | — | 0 |
| CVE-1999-0561 IIS has the #exec function enabled for Server Side Include (SSI) files. | N/A | NONE | — | 0 |
| CVE-1999-0564 An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to become disabled. | N/A | NONE | — | 0 |
| CVE-1999-0578 A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys. | N/A | NONE | — | 0 |
| CVE-1999-0579 A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys. | N/A | NONE | — | 0 |
| CVE-1999-0580 The HKEY_LOCAL_MACHINE key in a Windows NT system has inappropriate, system-critical permissions. | N/A | NONE | — | 0 |
| CVE-1999-0581 The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions. | N/A | NONE | — | 0 |
| CVE-1999-0583 There is a one-way or two-way trust relationship between Windows NT domains. | N/A | NONE | — | 0 |
| CVE-1999-0584 A Windows NT file system is not NTFS. | N/A | NONE | — | 0 |
| CVE-1999-0794 Microsoft Excel does not warn a user when a macro is present in a Symbolic Link (SYLK) format file. | N/A | NONE | — | 0 |
| CVE-1999-0877 Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME. | N/A | NONE | — | 0 |
| CVE-1999-0879 Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file. | N/A | NONE | — | 0 |
| CVE-1999-0880 Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly. | N/A | NONE | — | 0 |
| CVE-1999-0933 TeamTrack web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | N/A | NONE | — | 0 |
This product uses data from the NVD API but is not endorsed or certified by the NVD.