-
CVE-1999-0845
•
published on February 4, 2000
Buffer overflow in SCO su program allows local users to gain root access via a long username.
-
CVE-1999-0860
•
published on February 4, 2000
Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.
-
CVE-1999-0952
•
published on February 4, 2000
Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.
-
CVE-1999-0984
•
published on February 4, 2000
Matt's Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
-
CVE-1999-0983
•
published on February 4, 2000
Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
-
CVE-1999-0993
•
published on February 4, 2000
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.
-
CVE-1999-1002
•
published on February 4, 2000
Netscape Navigator uses weak encryption for storing a user's Netscape mail password.
-
CVE-1999-1003
•
published on February 4, 2000
War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.
-
CVE-1999-0985
•
published on February 4, 2000
CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
-
CVE-1999-0988
•
published on February 4, 2000
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack.
-
CVE-1999-0990
•
published on February 4, 2000
Error messages generated by gdm with the VerboseAuth setting allows an attacker to identify valid users on a system.
-
CVE-1999-1006
•
published on February 4, 2000
Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP parameter.
-
CVE-1999-1009
•
published on February 4, 2000
The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system.
-
CVE-2000-0016
•
published on February 4, 2000
Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username.
-
CVE-2000-0021
•
published on February 4, 2000
Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin.
-
CVE-2000-0046
•
published on February 4, 2000
Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message.
-
CVE-2000-0017
•
published on February 4, 2000
Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
-
CVE-2000-0019
•
published on February 4, 2000
IMail POP3 daemon uses weak encryption, which allows local users to read files.
-
CVE-2000-0028
•
published on February 4, 2000
Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.
-
CVE-2000-0035
•
published on February 4, 2000
resend command in Majordomo allows local users to gain privileges via shell metacharacters.