-
CVE-1999-0068
•
published on September 29, 1999
CGI PHP mylog script allows an attacker to read any file on the target server.
-
CVE-1999-0069
•
published on September 29, 1999
Solaris ufsrestore buffer overflow.
-
CVE-1999-0072
•
published on September 29, 1999
Buffer overflow in AIX xdat gives root access to local users.
-
CVE-1999-0077
•
published on September 29, 1999
Predictable TCP sequence numbers allow spoofing.
-
CVE-1999-0080
•
published on September 29, 1999
Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command.
-
CVE-1999-0083
•
published on September 29, 1999
getcwd() file descriptor leak in FTP.
-
CVE-1999-0085
•
published on September 29, 1999
Buffer overflow in rwhod on AIX and other operating systems allows remote attackers to execute arbitrary code via a UDP packet with a long hostname.
-
CVE-1999-0090
•
published on September 29, 1999
Buffer overflow in AIX rcp command allows local users to obtain root access.
-
CVE-1999-0093
•
published on September 29, 1999
AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
-
CVE-1999-0096
•
published on September 29, 1999
Sendmail decode alias can be used to overwrite sensitive files.
-
CVE-1999-0109
•
published on September 29, 1999
Buffer overflow in ffbconfig in Solaris 2.5.1.
-
CVE-1999-0113
•
published on September 29, 1999
Some implementations of rlogin allow root access if given a -froot parameter.
-
CVE-1999-0116
•
published on September 29, 1999
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
-
CVE-1999-0117
•
published on September 29, 1999
AIX passwd allows local users to gain root access.
-
CVE-1999-0137
•
published on September 29, 1999
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
-
CVE-1999-0149
•
published on September 29, 1999
The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.
-
CVE-1999-0153
•
published on September 29, 1999
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
-
CVE-1999-0161
•
published on September 29, 1999
In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
-
CVE-1999-0166
•
published on September 29, 1999
NFS allows users to use a "cd .." command to access other directories besides the exported file system.
-
CVE-1999-0177
•
published on September 29, 1999
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.