Search
153,531 CVEs · Medium severity
CVEs (153,531, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 376–400 of 153,531 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-1999-1543 | MEDIUM | 4.6 | 1999-07-10 | MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File. | |
| CVE-1999-1518 | MEDIUM | 5.0 | 1999-07-15 | Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rli… | |
| CVE-1999-1378 | MEDIUM | 5.0 | 1999-07-19 | dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files. | |
| CVE-1999-0811 | MEDIUM | 5.0 | 1999-07-21 | Buffer overflow in Samba smbd program via a malformed message command. | |
| CVE-1999-1338 | MEDIUM | Patched | 5.0 | 1999-07-21 | Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions. |
| CVE-1999-0224 | MEDIUM | 5.0 | 1999-07-23 | Denial of service in Windows NT messenger service through a long username. | |
| CVE-1999-0700 | MEDIUM | 6.2 | 1999-07-29 | Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file. | |
| CVE-1999-0683 | MEDIUM | 5.0 | 1999-07-30 | Denial of service in Gauntlet Firewall via a malformed ICMP packet. | |
| CVE-1999-1130 | MEDIUM | Patched | 5.0 | 1999-07-30 | Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by sp… |
| CVE-1999-0672 | MEDIUM | 5.1 | 1999-08-01 | Buffer overflow in Fujitsu Chocoa IRC client via IRC channel topics. | |
| CVE-1999-1337 | MEDIUM | Patched | 4.6 | 1999-08-01 | FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other loc… |
| CVE-1999-0671 | MEDIUM | 5.1 | 1999-08-03 | Buffer overflow in ToxSoft NextFTP client through CWD command. | |
| CVE-1999-0719 | MEDIUM | 4.6 | 1999-08-05 | The Guile plugin for the Gnumeric spreadsheet package allows attackers to execute arbitrary code. | |
| CVE-1999-0682 | MEDIUM | 5.0 | 1999-08-06 | Microsoft Exchange 5.5 allows a remote attacker to relay email (i.e. spam) using encapsulated SMTP addresses, even if the anti-relaying features are enabled. | |
| CVE-1999-0727 | MEDIUM | 5.0 | 1999-08-06 | A kernel leak in the OpenBSD kernel allows IPsec packets to be sent unencrypted. | |
| CVE-1999-1524 | MEDIUM | Patched | 5.0 | 1999-08-07 | FlowPoint DSL router firmware versions prior to 3.0.8 allows a remote attacker to exploit a password recovery feature from the network and conduct brute force password gues… |
| CVE-1999-0673 | MEDIUM | 5.1 | 1999-08-08 | Buffer overflow in ALMail32 POP3 client via From: or To: headers. | |
| CVE-1999-0675 | MEDIUM | 5.0 | 1999-08-09 | Check Point FireWall-1 can be subjected to a denial of service via UDP packets that are sent through VPN-1 to port 0 of a host. | |
| CVE-1999-0676 | MEDIUM | 4.6 | 1999-08-09 | sdtcm_convert in Solaris 2.6 allows a local user to overwrite sensitive files via a symlink attack. | |
| CVE-1999-0680 | MEDIUM | 5.0 | 1999-08-09 | Windows NT Terminal Server performs extra work when a client opens a new connection but before it is authenticated, allowing for a denial of service. | |
| CVE-1999-0867 | MEDIUM | 5.0 | 1999-08-11 | Denial of service in IIS 4.0 via a flood of HTTP requests with malformed headers. | |
| CVE-1999-0724 | MEDIUM | 4.6 | 1999-08-12 | Buffer overflow in OpenBSD procfs and fdescfs file systems via uio_offset in the readdir() function. | |
| CVE-1999-1336 | MEDIUM | Patched | 5.0 | 1999-08-12 | 3Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 allows remote attackers to cause a denial of service (reboot) via a flood of IAC packets to the telnet port. |
| CVE-1999-0746 | MEDIUM | 5.0 | 1999-08-16 | A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to conduct a denial of service. | |
| CVE-1999-0888 | MEDIUM | 4.6 | 1999-08-16 | dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script. |