-
CVE-1999-0344
•
published on September 29, 1999
NT users can gain debug-level access on a system process using the Sechole exploit.
-
CVE-1999-0355
•
published on September 29, 1999
Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service.
-
CVE-1999-0367
•
published on September 29, 1999
NetBSD netstat command allows local users to access kernel memory.
-
CVE-1999-0371
•
published on September 29, 1999
Lynx allows a local user to overwrite sensitive files through /tmp symlinks.
-
CVE-1999-0379
•
published on September 29, 1999
Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripting.
-
CVE-1999-0391
•
published on September 29, 1999
The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user.
-
CVE-1999-0420
•
published on September 29, 1999
umapfs allows local users to gain root privileges by changing their uid through a malicious mount_umap program.
-
CVE-1999-0425
•
published on September 29, 1999
talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes.
-
CVE-1999-0448
•
published on September 29, 1999
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.
-
CVE-1999-0449
•
published on September 29, 1999
The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.
-
CVE-1999-0457
•
published on September 29, 1999
Linux ftpwatch program allows local users to gain root privileges.
-
CVE-1999-0458
•
published on September 29, 1999
L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
-
CVE-1999-0474
•
published on September 29, 1999
The ICQ Webserver allows remote attackers to use .. to access arbitrary files outside of the user's personal directory.
-
CVE-1999-0482
•
published on September 29, 1999
OpenBSD kernel crash through TSS handling, as caused by the crashme program.
-
CVE-1999-0484
•
published on September 29, 1999
Buffer overflow in OpenBSD ping.
-
CVE-1999-0487
•
published on September 29, 1999
The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files.
-
CVE-1999-0513
•
published on September 29, 1999
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
-
CVE-1999-0551
•
published on September 29, 1999
HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests.
-
CVE-1999-0627
•
published on September 29, 1999
The rexd service is running, which uses weak authentication that can allow an attacker to execute commands.
-
CVE-1999-0211
•
published on September 29, 1999
Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone.