-
CVE-1999-0178
•
published on September 29, 1999
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
-
CVE-1999-0184
•
published on September 29, 1999
When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records.
-
CVE-1999-0191
•
published on September 29, 1999
IIS newdsn.exe CGI script allows remote users to overwrite files.
-
CVE-1999-0194
•
published on September 29, 1999
Denial of service in in.comsat allows attackers to generate messages.
-
CVE-1999-0196
•
published on September 29, 1999
websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver parameter ($VAR_receiver variable).
-
CVE-1999-0201
•
published on September 29, 1999
A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.
-
CVE-1999-0217
•
published on September 29, 1999
Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.
-
CVE-1999-0239
•
published on September 29, 1999
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
-
CVE-1999-0244
•
published on September 29, 1999
Livingston RADIUS code has a buffer overflow which can allow remote execution of commands as root.
-
CVE-1999-0251
•
published on September 29, 1999
Denial of service in talk program allows remote attackers to disrupt a user's display.
-
CVE-1999-0265
•
published on September 29, 1999
ICMP redirect messages may crash or lock up a host.
-
CVE-1999-0267
•
published on September 29, 1999
Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution.
-
CVE-1999-0269
•
published on September 29, 1999
Netscape Enterprise servers may list files through the PageServices query.
-
CVE-1999-0278
•
published on September 29, 1999
In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL.
-
CVE-1999-0289
•
published on September 29, 1999
The Apache web server for Win32 may provide access to restricted files when a . (dot) is appended to a requested URL.
-
CVE-1999-0293
•
published on September 29, 1999
AAA authentication on Cisco systems allows attackers to execute commands without authorization.
-
CVE-1999-0301
•
published on September 29, 1999
Buffer overflow in SunOS/Solaris ps command.
-
CVE-1999-0310
•
published on September 29, 1999
SSH 1.2.25 on HP-UX allows access to new user accounts.
-
CVE-1999-0313
•
published on September 29, 1999
disk_bandwidth on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
-
CVE-1999-0324
•
published on September 29, 1999
ppl program in HP-UX allows local users to create root files through symlinks.