1999 CVE Vulnerabilities

897 CVEs published in 1999.

CVE IDSeverityCVSSDescription
CVE-1999-0777——IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permiss...
CVE-1999-0906——Buffer overflow in sccw allows local users to gain root access via the HOME environmental variable.
CVE-1999-0908——Denial of service in Solaris TCP streams driver via a malicious connection that causes the server to panic as a result o...
CVE-1999-1534——Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root ac...
CVE-1999-1477——Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in program...
CVE-1999-1013——named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via t...
CVE-1999-0786——The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable an...
CVE-1999-0912——FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
CVE-1999-0708——Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field.
CVE-1999-0909——Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with ...
CVE-1999-0787——The SSH authentication agent follows symlinks via a UNIX domain socket.
CVE-1999-0886——The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Man...
CVE-1999-0704——Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
CVE-1999-0890——iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error.
CVE-1999-0907——sccw allows local users to read arbitrary files.
CVE-1999-0953——WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attacker...
CVE-1999-0954——WWWBoard has a default username and default password.
CVE-1999-0817——Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external progra...
CVE-1999-1053——guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo...
CVE-1999-0689——The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.
CVE-1999-0691——Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a lo...
CVE-1999-0750——Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the us...
CVE-1999-0687——The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
CVE-1999-0751——Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
CVE-1999-0759——Buffer overflow in FuseMAIL POP service via long USER and PASS commands.

Check if your code is affected by 1999 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now