The systat service is running.
The daytime service is running.
The chargen service is running.
The Gopher service is running.
The UUCP service is running.
The netstat service is running, which provides sensitive information to remote attackers.
The rsh/rlogin service is running.
A component service related to NIS+ is running.
The OS/2 or POSIX subsystem in NT is enabled.
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs th
WinGate is being used.
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such
A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outda
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has bee
An application-critical Windows NT registry key has inappropriate permissions.
An application-critical Windows NT registry key has an inappropriate value.
Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.
PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) f
Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allo
wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.
IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" r
The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the
HP-UX aserver program allows local users to gain privileges via a symlink attack.
Buffer overflow in the bootp server in the Debian Linux netstd package.
Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.
search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attac
Buffer overflow in Dosemu Slang library in Linux.
Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames.
The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to re
L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain device
Solaris ff.core allows local users to modify files.
Buffer overflow in Thomas Boutell's cgic library version up to 1.05.
Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
By design, Maximizer Enterprise 4 calendar and address book program allows arbitrary users to modify the calendar of oth
Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access
Linux ftpwatch program allows local users to gain root privileges.
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read
Windows NT 4.0 beta allows users to read and delete shares.
Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.
Buffer overflow in dtaction command gives root access.
WebRamp M3 router does not disable remote telnet or HTTP access to itself, even when access has been explicitly disabled
Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial
ControlIT 4.5 and earlier (aka Remotely Possible) has weak password encryption.
ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book.
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets
Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line arg
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "abou
Denial of service in Linux 2.2.0 running the ldd command on a core file.
Scan for 1999 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started