1999 CVE Vulnerabilities
897 CVEs published in 1999.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-1999-1325 | — | — | 0.3% | Dec 31, 1999 | SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows loc... |
| CVE-1999-1124 | — | — | 1.5% | Dec 31, 1999 | HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports... |
| CVE-1999-1585 | — | — | 0.4% | Dec 31, 1999 | The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system co... |
| CVE-1999-1379 | — | — | 2.6% | Dec 31, 1999 | DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source addr... |
| CVE-1999-1259 | — | — | 2.2% | Dec 31, 1999 | Microsoft Office 98, Macintosh Edition, does not properly initialize the disk space used by Office 98 files and effectiv... |
| CVE-1999-1316 | — | — | 3.9% | Dec 31, 1999 | Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easi... |
| CVE-1999-1094 | — | — | 18.1% | Dec 31, 1999 | Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long U... |
| CVE-1999-0815 | — | — | 14.7% | Dec 31, 1999 | Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory ex... |
| CVE-1999-1324 | CRITICAL | 9.8 | 3.1% | Dec 31, 1999 | VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accou... |
| CVE-1999-1233 | — | — | 5.5% | Dec 31, 1999 | IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does n... |
| CVE-1999-1455 | — | — | 3.9% | Dec 31, 1999 | RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts f... |
| CVE-1999-1456 | — | — | 1.7% | Dec 31, 1999 | thttpd HTTP server 2.03 and earlier allows remote attackers to read arbitrary files via a GET request with more than one... |
| CVE-1999-1333 | — | — | 3.3% | Dec 31, 1999 | automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute ... |
| CVE-1999-1335 | — | — | 1.9% | Dec 31, 1999 | snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read ... |
| CVE-1999-1055 | — | — | 6.9% | Dec 31, 1999 | Microsoft Excel 97 does not warn the user before executing worksheet functions, which could allow attackers to execute a... |
| CVE-1999-1364 | — | — | 1.5% | Dec 31, 1999 | Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functio... |
| CVE-1999-1307 | — | — | 0.3% | Dec 31, 1999 | Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges. |
| CVE-1999-1362 | — | — | 1.4% | Dec 31, 1999 | Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32... |
| CVE-1999-1360 | — | — | 1.4% | Dec 31, 1999 | Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was... |
| CVE-1999-1359 | — | — | 3.9% | Dec 31, 1999 | When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enf... |
| CVE-1999-1358 | — | — | 1.4% | Dec 31, 1999 | When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the loc... |
| CVE-1999-1328 | — | — | 0.4% | Dec 31, 1999 | linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access ... |
| CVE-1999-1586 | — | — | 0.4% | Dec 31, 1999 | loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gai... |
| CVE-1999-1127 | HIGH | 7.5 | 15.1% | Dec 31, 1999 | Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a ... |
| CVE-1999-1287 | — | — | 1.3% | Dec 31, 1999 | Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface. |
Check if your code is affected by 1999 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now