-
CVE-1999-0618
•
published on February 4, 2000
The rexec service is running.
-
CVE-1999-0624
•
published on February 4, 2000
The rstat/rstatd service is running.
-
CVE-1999-0636
•
published on February 4, 2000
The discard service is running.
-
CVE-1999-0637
•
published on February 4, 2000
The systat service is running.
-
CVE-1999-0641
•
published on February 4, 2000
The UUCP service is running.
-
CVE-1999-0650
•
published on February 4, 2000
The netstat service is running, which provides sensitive information to remote attackers.
-
CVE-1999-0656
•
published on February 4, 2000
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.
-
CVE-1999-0307
•
published on February 4, 2000
Buffer overflow in HP-UX cstm program allows local users to gain root privileges.
-
CVE-1999-0319
•
published on February 4, 2000
Buffer overflow in xmcd 2.1 allows local users to gain access through a user resource setting.
-
CVE-1999-0330
•
published on February 4, 2000
Linux bdash game has a buffer overflow that allows local users to gain root access.
-
CVE-1999-0333
•
published on February 4, 2000
HP OpenView Omniback allows remote execution of commands as root via spoofing, and local users can gain root access via a symlink attack.
-
CVE-1999-0345
•
published on February 4, 2000
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
-
CVE-1999-0347
•
published on February 4, 2000
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
-
CVE-1999-0399
•
published on February 4, 2000
The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attackers to place a malicious file in a different location, possibly allowing the attacker to execute commands.
-
CVE-1999-0401
•
published on February 4, 2000
A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files.
-
CVE-1999-0419
•
published on February 4, 2000
When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and repeatedly attempts to redeliver the message, causing a denial of service.
-
CVE-1999-0455
•
published on February 4, 2000
The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly.
-
CVE-1999-0480
•
published on February 4, 2000
Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack.
-
CVE-1999-0495
•
published on February 4, 2000
A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares.
-
CVE-1999-0498
•
published on February 4, 2000
TFTP is not running in a restricted directory, allowing a remote attacker to access sensitive information such as password files.