-
CVE-1999-0180
•
published on September 29, 1999
in.rshd allows users to login with a NULL username and execute commands.
-
CVE-1999-0183
•
published on September 29, 1999
Linux implementations of TFTP would allow access to files outside the restricted directory.
-
CVE-1999-0192
•
published on September 29, 1999
Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.
-
CVE-1999-0202
•
published on September 29, 1999
The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.
-
CVE-1999-0208
•
published on September 29, 1999
rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.
-
CVE-1999-0219
•
published on September 29, 1999
Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1) CWD or (2) LS (list) command.
-
CVE-1999-0228
•
published on September 29, 1999
Denial of service in RPCSS.EXE program (RPC Locator) in Windows NT.
-
CVE-1999-0236
•
published on September 29, 1999
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
-
CVE-1999-0260
•
published on September 29, 1999
The jj CGI program allows command execution via shell metacharacters.
-
CVE-1999-0262
•
published on September 29, 1999
Hylafax faxsurvey CGI script on Linux allows remote attackers to execute arbitrary commands via shell metacharacters in the query string.
-
CVE-1999-0263
•
published on September 29, 1999
Solaris SUNWadmap can be exploited to obtain root access.
-
CVE-1999-0272
•
published on September 29, 1999
Denial of service in Slmail v2.5 through the POP3 port.
-
CVE-1999-0276
•
published on September 29, 1999
mSQL v2.0.1 and below allows remote execution through a buffer overflow.
-
CVE-1999-0281
•
published on September 29, 1999
Denial of service in IIS using long URLs.
-
CVE-1999-0357
•
published on September 29, 1999
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets.
-
CVE-1999-0363
•
published on September 29, 1999
SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.
-
CVE-1999-0374
•
published on September 29, 1999
Debian GNU/Linux cfengine package is susceptible to a symlink attack.
-
CVE-1999-0376
•
published on September 29, 1999
Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.
-
CVE-1999-0383
•
published on September 29, 1999
ACC Tigris allows public access without a login.
-
CVE-1999-0385
•
published on September 29, 1999
The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.