Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

127,912 CVEs · High severity

CVEs (127,912, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 401–425 of 127,912 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-1999-0220 HIGH 10.0 1999-01-01 Attackers can do a denial of service of IRC by crashing the server.
CVE-1999-0226 HIGH 10.0 1999-01-01 Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.
CVE-1999-0240 HIGH 7.5 1999-01-01 Some filters or firewalls allow fragmented SYN packets with IP reserved bits in violation of their implemented policy.
CVE-1999-0243 HIGH 10.0 1999-01-01 Linux cfingerd could be exploited to gain root access.
CVE-1999-0248 HIGH 10.0 1999-01-01 A race condition in the authentication agent mechanism of sshd 1.2.17 allows an attacker to steal another user's credentials.
CVE-1999-0255 HIGH 10.0 1999-01-01 Buffer overflow in ircd allows arbitrary command execution.
CVE-1999-0268 HIGH 10.0 1999-01-01 MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.
CVE-1999-0276 HIGH 7.5 1999-01-01 mSQL v2.0.1 and below allows remote execution through a buffer overflow.
CVE-1999-0283 HIGH 10.0 1999-01-01 The Java Web Server would allow remote users to obtain the source code for CGI programs.
CVE-1999-0285 HIGH 10.0 1999-01-01 Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection.
CVE-1999-0286 HIGH 10.0 1999-01-01 In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages.
CVE-1999-0361 HIGH 10.0 1999-01-01 NetWare version of LaserFiche stores usernames and passwords unencrypted, and allows administrative changes without logging.
CVE-1999-0364 HIGH 10.0 1999-01-01 Microsoft Access 97 stores a database password as plaintext in a foreign mdb, allowing access to data.
CVE-1999-0394 HIGH 10.0 1999-01-01 DPEC Online Courseware allows an attacker to change another user's password without knowing the original password.
CVE-1999-0397 HIGH 10.0 1999-01-01 The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext.
CVE-1999-0399 HIGH 7.5 1999-01-01 The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attackers to place a malicious file in a different locatio…
CVE-1999-0452 HIGH 10.0 1999-01-01 A service or application has a backdoor password that was placed there by the developer.
CVE-1999-0454 HIGH 10.0 1999-01-01 A remote attacker can sometimes identify the operating system of a host based on how it reacts to some IP or ICMP packets, using a tool such as nmap or queso.
CVE-1999-0465 HIGH 10.0 1999-01-01 Remote attackers can crash Lynx and Internet Explorer using an IMG tag with a large width parameter.
CVE-1999-0495 HIGH 10.0 1999-01-01 A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares.
CVE-1999-0512 HIGH 10.0 1999-01-01 A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.
CVE-1999-0515 HIGH 10.0 1999-01-01 An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv.
CVE-1999-0527 HIGH 10.0 1999-01-01 The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory is writeable by world, a real password file is obta…
CVE-1999-0528 HIGH 7.5 1999-01-01 A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of.
CVE-1999-0529 HIGH 7.5 1999-01-01 A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x.x, 217.x.x.x, etc.