1999 CVE Vulnerabilities

897 CVEs published in 1999.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-1999-0912FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
CVE-1999-0786The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable an...
CVE-1999-0708Buffer overflow in cfingerd allows local users to gain root privileges via a long GECOS field.
CVE-1999-0909Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with ...
CVE-1999-0787The SSH authentication agent follows symlinks via a UNIX domain socket.
CVE-1999-0886The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Man...
CVE-1999-0890iHTML Merchant allows remote attackers to obtain sensitive information or execute commands via a code parsing error.
CVE-1999-0907sccw allows local users to read arbitrary files.
CVE-1999-0704Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
CVE-1999-0954WWWBoard has a default username and default password.
CVE-1999-0953WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attacker...
CVE-1999-0817Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external progra...
CVE-1999-1053guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remo...
CVE-1999-0750Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the us...
CVE-1999-0751Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
CVE-1999-0759Buffer overflow in FuseMAIL POP service via long USER and PASS commands.
CVE-1999-0691Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a lo...
CVE-1999-0689The CDE dtspcd daemon allows local users to execute arbitrary commands via a symlink attack.
CVE-1999-1014Buffer overflow in mail command in Solaris 2.7 and 2.7 allows local users to gain privileges via a long -m argument.
CVE-1999-0687The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
CVE-1999-1521Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command...
CVE-1999-0702Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites featur...
CVE-1999-0910Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be c...
CVE-1999-1575The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumb...
CVE-1999-1377Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

Check if your code is affected by 1999 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now