1999 CVE Vulnerabilities

897 CVEs published in 1999.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-1999-1078WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily d...
CVE-1999-0770Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to ...
CVE-1999-1017Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting ...
CVE-1999-1018IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, wh...
CVE-1999-0710The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory...
CVE-1999-0224Denial of service in Windows NT messenger service through a long username.
CVE-1999-0810Denial of service in Samba NETBIOS name service daemon (nmbd).
CVE-1999-1165GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (...
CVE-1999-1338Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.
CVE-1999-0811Buffer overflow in Samba smbd program via a malformed message command.
CVE-1999-0721Denial of service in Windows NT Local Security Authority (LSA) through a malformed LSA request.
CVE-1999-1535Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial ...
CVE-1999-1560Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the T...
CVE-1999-0692The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain r...
CVE-1999-1378dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read...
CVE-1999-1011The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x expose...
CVE-1999-1518Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service a...
CVE-1999-1086Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain a...
CVE-1999-1545Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local u...
CVE-1999-1460BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying t...
CVE-1999-1166Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by acce...
CVE-1999-1543MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
CVE-1999-0809Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected th...
CVE-1999-1537IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attac...
CVE-1999-0752Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.

Check if your code is affected by 1999 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now