1999 CVE Vulnerabilities

897 CVEs published in 1999.

CVE IDSeverityCVSSDescription
CVE-1999-1104——Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows lo...
CVE-1999-1315——Vulnerabilities in DECnet/OSI for OpenVMS before 5.8 on DEC Alpha AXP and VAX/VMS systems allow local users to gain priv...
CVE-1999-1339——Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3....
CVE-1999-1300——Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounti...
CVE-1999-1359——When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enf...
CVE-1999-1222——Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0....
CVE-1999-1334——Multiple buffer overflows in filter command in Elm 2.4 allows attackers to execute arbitrary commands via (1) long From:...
CVE-1999-1307——Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges.
CVE-1999-1055——Microsoft Excel 97 does not warn the user before executing worksheet functions, which could allow attackers to execute a...
CVE-1999-1333——automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute ...
CVE-1999-1330——The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer...
CVE-1999-1087——Internet Explorer 4 treats a 32-bit number ("dotless IP address") in the a URL as the hostname instead of an IP address,...
CVE-1999-1451——The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.
CVE-1999-1452——GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has l...
CVE-1999-1175——Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, whic...
CVE-1999-1364——Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functio...
CVE-1999-1444——genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent...
CVE-1999-1379——DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source addr...
CVE-1999-1382——NetWare NFS mode 1 and 2 implements the "Read Only" flag in Unix by changing the ownership of a file to root, which allo...
CVE-1999-1329——Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.
CVE-1999-1585——The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system co...
CVE-1999-1259——Microsoft Office 98, Macintosh Edition, does not properly initialize the disk space used by Office 98 files and effectiv...
CVE-1999-1362——Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32...
CVE-1999-1591——Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for SP4, does not requir...
CVE-1999-1093——Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlie...

Check if your code is affected by 1999 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now