-
CVE-1999-0591
•
published on February 4, 2000
An event log in Windows NT has inappropriate access permissions.
-
CVE-1999-0593
•
published on February 4, 2000
The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.
-
CVE-1999-0594
•
published on February 4, 2000
A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.
-
CVE-1999-0601
•
published on February 4, 2000
A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.
-
CVE-1999-0610
•
published on February 4, 2000
An incorrect configuration of the Webcart CGI program could disclose private information.
-
CVE-1999-0625
•
published on February 4, 2000
The rpc.rquotad service is running.
-
CVE-1999-0632
•
published on February 4, 2000
The RPC portmapper service is running.
-
CVE-1999-0640
•
published on February 4, 2000
The Gopher service is running.
-
CVE-1999-0662
•
published on February 4, 2000
A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete.
-
CVE-1999-0663
•
published on February 4, 2000
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.
-
CVE-1999-0669
•
published on February 4, 2000
The Eyedog ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy.
-
CVE-1999-0684
•
published on February 4, 2000
Denial of service in Sendmail 8.8.6 in HPUX.
-
CVE-1999-0698
•
published on February 4, 2000
Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.
-
CVE-1999-0712
•
published on February 4, 2000
A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-readable.
-
CVE-1999-0089
•
published on February 4, 2000
Buffer overflow in AIX libDtSvc library can allow local users to gain root access.
-
CVE-1999-0098
•
published on February 4, 2000
Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
-
CVE-1999-0123
•
published on February 4, 2000
Race condition in Linux mailx command allows local users to read user files.
-
CVE-1999-0127
•
published on February 4, 2000
swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary files to gain root access.
-
CVE-1999-0200
•
published on February 4, 2000
Windows NT FTP server (WFTP) with the guest account enabled without a password allows an attacker to log into the FTP server using any username and password.
-
CVE-1999-0229
•
published on February 4, 2000
Denial of service in Windows NT IIS server using ..\..