1999 CVE Vulnerabilities

897 CVEs published in 1999.

CVE IDSeverityCVSSDescription
CVE-1999-0390——Buffer overflow in Dosemu Slang library in Linux.
CVE-1999-0914——Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.
CVE-1999-0389——Buffer overflow in the bootp server in the Debian Linux netstd package.
CVE-1999-1170——IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" r...
CVE-1999-0402——wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.
CVE-1999-1422——The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the ...
CVE-1999-0512——A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.
CVE-1999-0515——An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv.
CVE-1999-0520——A system-critical NETBIOS/SMB share has inappropriate access control.
CVE-1999-0527——The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory...
CVE-1999-0528——A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in...
CVE-1999-0529——A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x...
CVE-1999-0530——A system is operating in "promiscuous" mode which allows it to perform packet sniffing.
CVE-1999-0547——An SSH server allows authentication through the .rhosts file.
CVE-1999-0548——A superfluous NFS server is running, but it is not importing or exporting any file systems.
CVE-1999-0549——Windows NT automatically logs in an administrator upon rebooting.
CVE-1999-0555——A Unix account with a name other than "root" has UID 0, i.e. root privileges.
CVE-1999-0556——Two or more Unix accounts have the same UID.
CVE-1999-0559——A system-critical Unix file or directory has inappropriate permissions.
CVE-1999-0560——A system-critical Windows NT file or directory has inappropriate permissions.
CVE-1999-1430——PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) f...
CVE-1999-1440——Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allo...
CVE-1999-0561——IIS has the #exec function enabled for Server Side Include (SSI) files.
CVE-1999-0568——rpc.admind in Solaris is not running in a secure mode.
CVE-1999-0569——A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not cont...

Check if your code is affected by 1999 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now