-
CVE-1999-0465
•
published on February 4, 2000
Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter.
-
CVE-1999-0488
•
published on February 4, 2000
Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.
-
CVE-1999-0503
•
published on February 4, 2000
A Windows NT local user or administrator account has a guessable password.
-
CVE-1999-0504
•
published on February 4, 2000
A Windows NT local user or administrator account has a default, null, blank, or missing password.
-
CVE-1999-0508
•
published on February 4, 2000
An account on a router, firewall, or other network device has a default, null, blank, or missing password.
-
CVE-1999-0512
•
published on February 4, 2000
A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.
-
CVE-1999-0547
•
published on February 4, 2000
An SSH server allows authentication through the .rhosts file.
-
CVE-1999-0550
•
published on February 4, 2000
A router's routing tables can be obtained from arbitrary hosts.
-
CVE-1999-0554
•
published on February 4, 2000
NFS exports system-critical data to the world, e.g. / or a password file.
-
CVE-1999-0555
•
published on February 4, 2000
A Unix account with a name other than "root" has UID 0, i.e. root privileges.
-
CVE-1999-0559
•
published on February 4, 2000
A system-critical Unix file or directory has inappropriate permissions.
-
CVE-1999-0564
•
published on February 4, 2000
An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to become disabled.
-
CVE-1999-0569
•
published on February 4, 2000
A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file.
-
CVE-1999-0572
•
published on February 4, 2000
.reg files are associated with the Windows NT registry editor (regedit), making the registry susceptible to Trojan Horse attacks.
-
CVE-1999-0581
•
published on February 4, 2000
The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions.
-
CVE-1999-0583
•
published on February 4, 2000
There is a one-way or two-way trust relationship between Windows NT domains.
-
CVE-1999-0584
•
published on February 4, 2000
A Windows NT file system is not NTFS.
-
CVE-1999-0587
•
published on February 4, 2000
A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data.
-
CVE-1999-0607
•
published on February 4, 2000
quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access control, which allows remote attackers to obtain the cleartext administrator password and gain privileges.
-
CVE-1999-0613
•
published on February 4, 2000
The rpc.sprayd service is running.