Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

894 results · Page 1/18
9.8
CVE-1999-0426

The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.

9.8
CVE-1999-1324

VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accou

9.8
CVE-1999-1588

Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code

8.2
CVE-1999-0468

Internet Explorer 5.0 allows a remote server to read arbitrary files on the client's file system using the Microsoft Scr

7.8
CVE-1999-1549

Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "s

7.5
CVE-1999-1568

Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a l

7.5
CVE-1999-1127

Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a

7.3
CVE-1999-0632

The RPC portmapper service is running.

5.5
CVE-1999-1386

Perl 5.004_04 and earlier follows symbolic links when running with the -e option, which allows local users to overwrite

CVE-1999-0197

finger 0@host on some systems may print information on some user accounts.

CVE-1999-0198

finger .@host on some systems may print information on some user accounts.

CVE-1999-0200

Windows NT FTP server (WFTP) with the guest account enabled without a password allows an attacker to log into the FTP se

CVE-1999-0205

Denial of service in Sendmail 8.6.11 and 8.6.12.

CVE-1999-0220

Attackers can do a denial of service of IRC by crashing the server.

CVE-1999-0226

Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.

CVE-1999-0231

Buffer overflow in IP-Switch IMail and Seattle Labs Slmail 2.6 packages using a long VRFY command, causing a denial of s

CVE-1999-0240

Some filters or firewalls allow fragmented SYN packets with IP reserved bits in violation of their implemented policy.

CVE-1999-0243

Linux cfingerd could be exploited to gain root access.

CVE-1999-0248

A race condition in the authentication agent mechanism of sshd 1.2.17 allows an attacker to steal another user's credent

CVE-1999-0255

Buffer overflow in ircd allows arbitrary command execution.

CVE-1999-0268

MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.

CVE-1999-0276

mSQL v2.0.1 and below allows remote execution through a buffer overflow.

CVE-1999-0283

The Java Web Server would allow remote users to obtain the source code for CGI programs.

CVE-1999-0285

Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection.

CVE-1999-0286

In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages.

CVE-1999-0355

Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service.

CVE-1999-0361

NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logg

CVE-1999-0364

Microsoft Access 97 stores a database password as plaintext in a foreign mdb, allowing access to data.

CVE-1999-0384

The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's c

CVE-1999-0388

DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute command

CVE-1999-0393

Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of he

CVE-1999-0394

DPEC Online Courseware allows an attacker to change another user's password without knowing the original password.

CVE-1999-0395

A race condition in the BackWeb Polite Agent Protocol allows an attacker to spoof a BackWeb server.

CVE-1999-0397

The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext.

CVE-1999-0398

In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.

CVE-1999-0399

The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attack

CVE-1999-0401

A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files.

CVE-1999-0448

IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL

CVE-1999-0452

A service or application has a backdoor password that was placed there by the developer.

CVE-1999-0453

An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol

CVE-1999-0454

A remote attacker can sometimes identify the operating system of a host based on how it reacts to some IP or ICMP packet

CVE-1999-0465

Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter.

CVE-1999-0495

A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares.

CVE-1999-0497

Anonymous FTP is enabled.

CVE-1999-0512

A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.

CVE-1999-0515

An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv.

CVE-1999-0520

A system-critical NETBIOS/SMB share has inappropriate access control.

CVE-1999-0523

ICMP echo (ping) is allowed from arbitrary hosts.

CVE-1999-0527

The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory

CVE-1999-0528

A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in

Scan for 1999 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started