Knowledge Graph
2714 entity nodes available. Select an entity to view its relations, neighbors, and evidence.
- CVE-1999-0001 (cve) — CVE-1999-0001: ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) vi
- CVE-1999-0003 (cve) — CVE-1999-0003: Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
- CVE-1999-0004 (cve) — CVE-1999-0004: MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook.
- CVE-1999-0006 (cve) — CVE-1999-0006: Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long
- CVE-1999-0005 (cve) — CVE-1999-0005: Arbitrary command execution via IMAP buffer overflow in authenticate command.
- CVE-1999-0008 (cve) — CVE-1999-0008: Buffer overflow in NIS+, in Sun's rpc.nisd program.
- CVE-1999-0007 (cve) — CVE-1999-0007: Information from SSL-encrypted sessions via PKCS #1.
- CVE-1999-0009 (cve) — CVE-1999-0009: Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
- CVE-1999-0002 (cve) — CVE-1999-0002: Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
- CVE-1999-0010 (cve) — CVE-1999-0010: Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
- CVE-1999-0011 (cve) — CVE-1999-0011: Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
- CVE-1999-0012 (cve) — CVE-1999-0012: Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file n
- CVE-1999-0013 (cve) — CVE-1999-0013: Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belongin
- CVE-1999-0014 (cve) — CVE-1999-0014: Unauthorized privileged access or denial of service via dtappgather program in CDE.
- CVE-1999-0015 (cve) — CVE-1999-0015: Teardrop IP denial of service.
- CVE-1999-0016 (cve) — CVE-1999-0016: Land IP denial of service.
- CVE-1999-0019 (cve) — CVE-1999-0019: Delete or create a file via rpc.statd, due to invalid information.
- CVE-1999-0020 (cve) — CVE-1999-0020: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0032. Reason: This candidate is a duplicate of
- CVE-1999-0018 (cve) — CVE-1999-0018: Buffer overflow in statd allows root privileges.
- CVE-1999-0017 (cve) — CVE-1999-0017: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
- CVE-1999-0021 (cve) — CVE-1999-0021: Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program.
- CVE-1999-0025 (cve) — CVE-1999-0025: root privileges via buffer overflow in df command on SGI IRIX systems.
- CVE-1999-0024 (cve) — CVE-1999-0024: DNS cache poisoning via BIND, by predictable query IDs.
- CVE-1999-0022 (cve) — CVE-1999-0022: Local user gains root privileges via buffer overflow in rdist, via expstr() function.
- CVE-1999-0026 (cve) — CVE-1999-0026: root privileges via buffer overflow in pset command on SGI IRIX systems.
- CVE-1999-0023 (cve) — CVE-1999-0023: Local user gains root privileges via buffer overflow in rdist, via lookup() function.
- CVE-1999-0027 (cve) — CVE-1999-0027: root privileges via buffer overflow in eject command on SGI IRIX systems.
- CVE-1999-0028 (cve) — CVE-1999-0028: root privileges via buffer overflow in login/scheme command on SGI IRIX systems.
- CVE-1999-0029 (cve) — CVE-1999-0029: root privileges via buffer overflow in ordist command on SGI IRIX systems.
- CVE-1999-0030 (cve) — CVE-1999-0030: root privileges via buffer overflow in xlock command on SGI IRIX systems.
- CVE-1999-0031 (cve) — CVE-1999-0031: JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's
- CVE-1999-0032 (cve) — CVE-1999-0032: Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as ro
- CVE-1999-0033 (cve) — CVE-1999-0033: Command execution in Sun systems via buffer overflow in the at program.
- CVE-1999-0036 (cve) — CVE-1999-0036: IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
- CVE-1999-0034 (cve) — CVE-1999-0034: Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
- CVE-1999-0038 (cve) — CVE-1999-0038: Buffer overflow in xlock program allows local users to execute commands as root.
- CVE-1999-0037 (cve) — CVE-1999-0037: Arbitrary command execution via metamail package using message headers, when user processes attacker's message using met
- CVE-1999-0035 (cve) — CVE-1999-0035: Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.
- CVE-1999-0039 (cve) — CVE-1999-0039: webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharac
- CVE-1999-0040 (cve) — CVE-1999-0040: Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
- CVE-1999-0042 (cve) — CVE-1999-0042: Buffer overflow in University of Washington's implementation of IMAP and POP servers.
- CVE-1999-0041 (cve) — CVE-1999-0041: Buffer overflow in NLS (Natural Language Service).
- CVE-1999-0045 (cve) — CVE-1999-0045: List of arbitrary files on Web host via nph-test-cgi script.
- CVE-1999-0044 (cve) — CVE-1999-0044: fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
- CVE-1999-0048 (cve) — CVE-1999-0048: Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
- CVE-1999-0047 (cve) — CVE-1999-0047: MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
- CVE-1999-0049 (cve) — CVE-1999-0049: Csetup under IRIX allows arbitrary file creation or overwriting.
- CVE-1999-0046 (cve) — CVE-1999-0046: Buffer overflow of rlogin program using TERM environmental variable.
- CVE-1999-0043 (cve) — CVE-1999-0043: Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and othe
- CVE-1999-0050 (cve) — CVE-1999-0050: Buffer overflow in HP-UX newgrp program.
- CVE-1999-0051 (cve) — CVE-1999-0051: Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.
- CVE-1999-0052 (cve) — CVE-1999-0052: IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash.
- CVE-1999-0054 (cve) — CVE-1999-0054: Sun's ftpd daemon can be subjected to a denial of service.
- CVE-1999-0053 (cve) — CVE-1999-0053: TCP RST denial of service in FreeBSD.
- CVE-1999-0057 (cve) — CVE-1999-0057: Vacation program allows command execution by remote users through a sendmail command.
- CVE-1999-0055 (cve) — CVE-1999-0055: Buffer overflows in Sun libnsl allow root access.
- CVE-1999-0056 (cve) — CVE-1999-0056: Buffer overflow in Sun's ping program can give root access to local users.
- CVE-1999-0058 (cve) — CVE-1999-0058: Buffer overflow in PHP cgi program, php.cgi allows shell access.
- CVE-1999-0059 (cve) — CVE-1999-0059: IRIX fam service allows an attacker to obtain a list of all files on the server.
- CVE-1999-0060 (cve) — CVE-1999-0060: Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port,
- CVE-1999-0061 (cve) — CVE-1999-0061: File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).
- CVE-1999-0063 (cve) — CVE-1999-0063: Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
- CVE-1999-0062 (cve) — CVE-1999-0062: The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage.
- CVE-1999-0065 (cve) — CVE-1999-0065: Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands.
- CVE-1999-0067 (cve) — CVE-1999-0067: phf CGI program allows remote command execution through shell metacharacters.
- CVE-1999-0066 (cve) — CVE-1999-0066: AnyForm CGI remote execution.
- CVE-1999-0064 (cve) — CVE-1999-0064: Buffer overflow in AIX lquerylv program gives root access to local users.
- CVE-1999-0068 (cve) — CVE-1999-0068: CGI PHP mylog script allows an attacker to read any file on the target server.
- CVE-1999-0069 (cve) — CVE-1999-0069: Solaris ufsrestore buffer overflow.
- CVE-1999-0070 (cve) — CVE-1999-0070: test-cgi program allows an attacker to list files on the server.
- CVE-1999-0071 (cve) — CVE-1999-0071: Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.
- CVE-1999-0072 (cve) — CVE-1999-0072: Buffer overflow in AIX xdat gives root access to local users.
- CVE-1999-0073 (cve) — CVE-1999-0073: Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass
- CVE-1999-0074 (cve) — CVE-1999-0074: Listening TCP ports are sequentially allocated, allowing spoofing attacks.
- CVE-1999-0076 (cve) — CVE-1999-0076: Buffer overflow in wu-ftp from PASV command causes a core dump.
- CVE-1999-0077 (cve) — CVE-1999-0077: Predictable TCP sequence numbers allow spoofing.
- CVE-1999-0075 (cve) — CVE-1999-0075: PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password.
- CVE-1999-0078 (cve) — CVE-1999-0078: pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments i
- CVE-1999-0079 (cve) — CVE-1999-0079: Remote attackers can cause a denial of service in FTP by issuing multiple PASV commands, causing the server to run out o
- CVE-1999-0080 (cve) — CVE-1999-0080: Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, suc
- CVE-1999-0081 (cve) — CVE-1999-0081: wu-ftp allows files to be overwritten via the rnfr command.
- CVE-1999-0082 (cve) — CVE-1999-0082: CWD ~root command in ftpd allows root access.
- CVE-1999-0083 (cve) — CVE-1999-0083: getcwd() file descriptor leak in FTP.
- CVE-1999-0084 (cve) — CVE-1999-0084: Certain NFS servers allow users to use mknod to gain privileges by creating a writable kmem device and setting the UID t
- CVE-1999-0088 (cve) — CVE-1999-0088: IRIX and AIX automountd services (autofsd) allow remote users to execute root commands.
- CVE-1999-0087 (cve) — CVE-1999-0087: Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
- CVE-1999-0086 (cve) — CVE-1999-0086: AIX routed allows remote users to modify sensitive files.
- CVE-1999-0085 (cve) — CVE-1999-0085: Buffer overflow in rwhod on AIX and other operating systems allows remote attackers to execute arbitrary code via a UDP
- CVE-1999-0090 (cve) — CVE-1999-0090: Buffer overflow in AIX rcp command allows local users to obtain root access.
- CVE-1999-0089 (cve) — CVE-1999-0089: Buffer overflow in AIX libDtSvc library can allow local users to gain root access.
- CVE-1999-0091 (cve) — CVE-1999-0091: Buffer overflow in AIX writesrv command allows local users to obtain root access.
- CVE-1999-0092 (cve) — CVE-1999-0092: Various vulnerabilities in the AIX portmir command allows local users to obtain root access.
- CVE-1999-0094 (cve) — CVE-1999-0094: AIX piodmgrsu command allows local users to gain additional group privileges.
- CVE-1999-0093 (cve) — CVE-1999-0093: AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
- CVE-1999-0096 (cve) — CVE-1999-0096: Sendmail decode alias can be used to overwrite sensitive files.
- CVE-1999-0095 (cve) — CVE-1999-0095: The debug command in Sendmail is enabled, allowing attackers to execute commands as root.
- CVE-1999-0097 (cve) — CVE-1999-0097: The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe c
- CVE-1999-0098 (cve) — CVE-1999-0098: Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
- CVE-1999-0099 (cve) — CVE-1999-0099: Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
- CVE-1999-0100 (cve) — CVE-1999-0100: Remote access in AIX innd 1.5.1, using control messages.
- CVE-1999-0102 (cve) — CVE-1999-0102: Buffer overflow in SLmail 3.x allows attackers to execute commands using a large FROM line.
- CVE-1999-0104 (cve) — CVE-1999-0104: A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.
- CVE-1999-0105 (cve) — CVE-1999-0105: finger allows recursive searches by using a long string of @ symbols.
- CVE-1999-0103 (cve) — CVE-1999-0103: Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or U
- CVE-1999-0101 (cve) — CVE-1999-0101: Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
- CVE-1999-0106 (cve) — CVE-1999-0106: Finger redirection allows finger bombs.
- CVE-1999-0107 (cve) — CVE-1999-0107: Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of
- CVE-1999-0109 (cve) — CVE-1999-0109: Buffer overflow in ffbconfig in Solaris 2.5.1.
- CVE-1999-0108 (cve) — CVE-1999-0108: The printers program in IRIX has a buffer overflow that gives root access to local users.
- CVE-1999-0110 (cve) — CVE-1999-0110: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0315. Reason: This candidate's original descri
- CVE-1999-0111 (cve) — CVE-1999-0111: RIP v1 is susceptible to spoofing.
- CVE-1999-0113 (cve) — CVE-1999-0113: Some implementations of rlogin allow root access if given a -froot parameter.
- CVE-1999-0114 (cve) — CVE-1999-0114: Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-
- CVE-1999-0115 (cve) — CVE-1999-0115: AIX bugfiler program allows local users to gain root access.
- CVE-1999-0117 (cve) — CVE-1999-0117: AIX passwd allows local users to gain root access.
- CVE-1999-0116 (cve) — CVE-1999-0116: Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to
- CVE-1999-0112 (cve) — CVE-1999-0112: Buffer overflow in AIX dtterm program for the CDE.
- CVE-1999-0118 (cve) — CVE-1999-0118: AIX infod allows local users to gain root access through an X display.
- CVE-1999-0119 (cve) — CVE-1999-0119: Windows NT 4.0 beta allows users to read and delete shares.
- CVE-1999-0120 (cve) — CVE-1999-0120: Sun/Solaris utmp file allows local users to gain root access if it is writable by users other than root.
- CVE-1999-0121 (cve) — CVE-1999-0121: Buffer overflow in dtaction command gives root access.
- CVE-1999-0122 (cve) — CVE-1999-0122: Buffer overflow in AIX lchangelv gives root access.
- CVE-1999-0123 (cve) — CVE-1999-0123: Race condition in Linux mailx command allows local users to read user files.
- CVE-1999-0124 (cve) — CVE-1999-0124: Vulnerabilities in UMN gopher and gopher+ versions 1.12 and 2.0x allow an intruder to read any files that can be accesse
- CVE-1999-0125 (cve) — CVE-1999-0125: Buffer overflow in SGI IRIX mailx program.
- CVE-1999-0128 (cve) — CVE-1999-0128: Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
- CVE-1999-0126 (cve) — CVE-1999-0126: SGI IRIX buffer overflow in xterm and Xaw allows root access.
- CVE-1999-0129 (cve) — CVE-1999-0129: Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
- CVE-1999-0127 (cve) — CVE-1999-0127: swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary fil
- CVE-1999-0130 (cve) — CVE-1999-0130: Local users can start Sendmail in daemon mode and gain root privileges.
- CVE-1999-0132 (cve) — CVE-1999-0132: Expreserve, as used in vi and ex, allows local users to overwrite arbitrary files and gain root access.
- CVE-1999-0131 (cve) — CVE-1999-0131: Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users
- CVE-1999-0134 (cve) — CVE-1999-0134: vold in Solaris 2.x allows local users to gain root access.
- CVE-1999-0133 (cve) — CVE-1999-0133: fm_fls license server for Adobe Framemaker allows local users to overwrite arbitrary files and gain root access.
- CVE-1999-0136 (cve) — CVE-1999-0136: Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access.
- CVE-1999-0138 (cve) — CVE-1999-0138: The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing ro
- CVE-1999-0135 (cve) — CVE-1999-0135: admintool in Solaris allows a local user to write to arbitrary files and gain root access.
- CVE-1999-0139 (cve) — CVE-1999-0139: Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access.
- CVE-1999-0137 (cve) — CVE-1999-0137: The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
- CVE-1999-0140 (cve) — CVE-1999-0140: Denial of service in RAS/PPTP on NT systems.
- CVE-1999-0142 (cve) — CVE-1999-0142: The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet
- CVE-1999-0143 (cve) — CVE-1999-0143: Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.
- CVE-1999-0141 (cve) — CVE-1999-0141: Java Bytecode Verifier allows malicious applets to execute arbitrary commands as the user of the applet.
- CVE-1999-0144 (cve) — CVE-1999-0144: Denial of service in Qmail by specifying a large number of recipients with the RCPT command.
- CVE-1999-0145 (cve) — CVE-1999-0145: Sendmail WIZ command enabled, allowing root access.
- CVE-1999-0146 (cve) — CVE-1999-0146: The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded
- CVE-1999-0147 (cve) — CVE-1999-0147: The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.
- CVE-1999-0148 (cve) — CVE-1999-0148: The handler CGI program in IRIX allows arbitrary command execution.
- CVE-1999-0150 (cve) — CVE-1999-0150: The Perl fingerd program allows arbitrary command execution from remote users.
- CVE-1999-0149 (cve) — CVE-1999-0149: The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.
- CVE-1999-0151 (cve) — CVE-1999-0151: The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access.
- CVE-1999-0152 (cve) — CVE-1999-0152: The DG/UX finger daemon allows remote command execution through shell metacharacters.
- CVE-1999-0154 (cve) — CVE-1999-0154: IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the U
- CVE-1999-0153 (cve) — CVE-1999-0153: Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
- CVE-1999-0156 (cve) — CVE-1999-0156: wu-ftpd FTP daemon allows any user and password combination.
- CVE-1999-0155 (cve) — CVE-1999-0155: The ghostscript command with the -dSAFER option allows remote attackers to execute commands.
- CVE-1999-0157 (cve) — CVE-1999-0157: Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service.
- CVE-1999-0158 (cve) — CVE-1999-0158: Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve a
- CVE-1999-0159 (cve) — CVE-1999-0159: Attackers can crash a Cisco IOS router or device, provided they can get to an interactive prompt (such as a login). Thi
- CVE-1999-0160 (cve) — CVE-1999-0160: Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connect
- CVE-1999-0161 (cve) — CVE-1999-0161: In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
- CVE-1999-0162 (cve) — CVE-1999-0162: The "established" keyword in some Cisco IOS software allowed an attacker to bypass filtering.
- CVE-1999-0163 (cve) — CVE-1999-0163: In older versions of Sendmail, an attacker could use a pipe character to execute root commands.
- CVE-1999-0164 (cve) — CVE-1999-0164: A race condition in the Solaris ps command allows an attacker to overwrite critical files.
- CVE-1999-0165 (cve) — CVE-1999-0165: NFS cache poisoning.
- CVE-1999-0166 (cve) — CVE-1999-0166: NFS allows users to use a "cd .." command to access other directories besides the exported file system.
- CVE-1999-0167 (cve) — CVE-1999-0167: In SunOS, NFS file handles could be guessed, giving unauthorized access to the exported file system.
- CVE-1999-0168 (cve) — CVE-1999-0168: The portmapper may act as a proxy and redirect service requests from an attacker, making the request appear to come from
- CVE-1999-0169 (cve) — CVE-1999-0169: NFS allows attackers to read and write any file on the system by specifying a false UID.
- CVE-1999-0170 (cve) — CVE-1999-0170: Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.
- CVE-1999-0171 (cve) — CVE-1999-0171: Denial of service in syslog by sending it a large number of superfluous messages.
- CVE-1999-0173 (cve) — CVE-1999-0173: FormMail CGI program can be used by web servers other than the host server that the program resides on.
- CVE-1999-0172 (cve) — CVE-1999-0172: FormMail CGI program allows remote execution of commands.
- CVE-1999-0174 (cve) — CVE-1999-0174: The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.
- CVE-1999-0175 (cve) — CVE-1999-0175: The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is intern
- CVE-1999-0176 (cve) — CVE-1999-0176: The Webgais program allows a remote user to execute arbitrary commands.
- CVE-1999-0177 (cve) — CVE-1999-0177: The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
- CVE-1999-0179 (cve) — CVE-1999-0179: Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
- CVE-1999-0178 (cve) — CVE-1999-0178: Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to
- CVE-1999-0180 (cve) — CVE-1999-0180: in.rshd allows users to login with a NULL username and execute commands.
- CVE-1999-0181 (cve) — CVE-1999-0181: The wall daemon can be used for denial of service, social engineering attacks, or to execute remote commands.
- CVE-1999-0183 (cve) — CVE-1999-0183: Linux implementations of TFTP would allow access to files outside the restricted directory.
- CVE-1999-0182 (cve) — CVE-1999-0182: Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.
- CVE-1999-0184 (cve) — CVE-1999-0184: When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious mod
- CVE-1999-0186 (cve) — CVE-1999-0186: In Solaris, an SNMP subagent has a default community string that allows remote attackers to execute arbitrary commands a
- CVE-1999-0185 (cve) — CVE-1999-0185: In SunOS or Solaris, a remote user could connect from an FTP server's data port to an rlogin server on a host that trust
- CVE-1999-0187 (cve) — CVE-1999-0187: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-1999-0022. Reason: This candidate is a duplicate of
- CVE-1999-0188 (cve) — CVE-1999-0188: The passwd command in Solaris can be subjected to a denial of service.
- CVE-1999-0189 (cve) — CVE-1999-0189: Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111.
- CVE-1999-0190 (cve) — CVE-1999-0190: Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access.
- CVE-1999-0191 (cve) — CVE-1999-0191: IIS newdsn.exe CGI script allows remote users to overwrite files.
- CVE-1999-0192 (cve) — CVE-1999-0192: Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environment
- CVE-1999-0193 (cve) — CVE-1999-0193: Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.
- CVE-1999-0194 (cve) — CVE-1999-0194: Denial of service in in.comsat allows attackers to generate messages.
- CVE-1999-0195 (cve) — CVE-1999-0195: Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using
- CVE-1999-0196 (cve) — CVE-1999-0196: websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver pa
- CVE-1999-0198 (cve) — CVE-1999-0198: finger .@host on some systems may print information on some user accounts.
- CVE-1999-0200 (cve) — CVE-1999-0200: Windows NT FTP server (WFTP) with the guest account enabled without a password allows an attacker to log into the FTP se
- CVE-1999-0197 (cve) — CVE-1999-0197: finger 0@host on some systems may print information on some user accounts.
- CVE-1999-0201 (cve) — CVE-1999-0201: A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.