Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29908 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1382 1 Novell 1 Netware 2026-06-16 7.2 HIGH N/A
NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to "Read Only," which NetWare-NFS changes to a setuid root program.
CVE-1999-1381 1 Dbadmin 1 Dbadmin 2026-06-16 7.5 HIGH N/A
Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.
CVE-1999-1380 1 Symantec 1 Norton Utilities 2026-06-16 5.1 MEDIUM N/A
Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.
CVE-1999-1379 1 Dnstools Software 1 Dnstools 2026-06-16 5.0 MEDIUM N/A
DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source address, which produces more traffic to the victim than was sent by the attacker.
CVE-1999-1378 1 Dbmlparser.exe 1 Dbmlparser.exe 2026-06-16 5.0 MEDIUM N/A
dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.
CVE-1999-1377 1 Matt Wright 1 Download.cgi 2026-06-16 5.0 MEDIUM N/A
Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.
CVE-1999-1376 1 Microsoft 1 Internet Information Server 2026-06-16 10.0 HIGH N/A
Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.
CVE-1999-1375 1 Microsoft 1 Internet Information Server 2026-06-16 5.0 MEDIUM N/A
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.
CVE-1999-1374 1 Arpanet 1 Perlshop 2026-06-16 5.0 MEDIUM N/A
perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.
CVE-1999-1373 1 Fore 1 Powerhub Software 2026-06-16 5.0 MEDIUM N/A
FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.
CVE-1999-1372 1 Triactive 1 Remote Management 2026-06-16 4.6 MEDIUM N/A
Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.
CVE-1999-1371 1 Sun 1 Sunos 2026-06-16 7.2 HIGH N/A
Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument.
CVE-1999-1370 1 Microsoft 1 Internet Explorer 2026-06-16 7.2 HIGH N/A
The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs.
CVE-1999-1369 1 Realnetworks 1 Realserver 2026-06-16 4.6 MEDIUM N/A
Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.
CVE-1999-1368 1 Broadcom 1 Inoculateit 2026-06-16 7.5 HIGH N/A
AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder tree of a Microsoft Exchange server, which could allow viruses to escape detection if a user's rules cause the message to be moved to a different mailbox.
CVE-1999-1367 1 Microsoft 1 Internet Explorer 2026-06-16 4.6 MEDIUM N/A
Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users.
CVE-1999-1366 1 David Harris 1 Pegasus Mail 2026-06-16 3.6 LOW N/A
Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.
CVE-1999-1365 1 Microsoft 1 Windows Nt 2026-06-16 7.2 HIGH N/A
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default.
CVE-1999-1364 1 Microsoft 1 Windows Nt 2026-06-16 2.1 LOW N/A
Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.
CVE-1999-1363 1 Microsoft 1 Windows Nt 2026-06-16 2.1 LOW N/A
Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.