Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29997 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1557 1 Ipswitch 1 Imail 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in the login functions in IMAP server (imapd) in Ipswitch IMail 5.0 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long user name or (2) a long password.
CVE-1999-1556 1 Microsoft 1 Sql Server 2026-06-16 7.2 HIGH N/A
Microsoft SQL Server 6.5 uses weak encryption for the password for the SQLExecutiveCmdExec account and stores it in an accessible portion of the registry, which could allow local users to gain privileges by reading and decrypting the CmdExecAccount value.
CVE-1999-1555 1 Cheyenne 1 Inoculan Anti-virus Server 2026-06-16 7.2 HIGH N/A
Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FULL CONTROL" permissions, which allows local users to cause Inoculan's antivirus update feature to install a Trojan horse dll.
CVE-1999-1554 1 Sgi 1 Irix 2026-06-16 2.1 LOW N/A
/usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail, which allows local users to read the mail of other users.
CVE-1999-1553 1 Xcmail 1 Xcmail 2026-06-16 10.0 HIGH N/A
Buffer overflow in XCmail 0.99.6 with autoquote enabled allows remote attackers to execute arbitrary commands via a long subject line.
CVE-1999-1552 1 Ibm 1 Aix 2026-06-16 7.2 HIGH N/A
dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.
CVE-1999-1551 1 Ipswitch 1 Imail 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL.
CVE-1999-1550 1 F5 1 Tmos 2026-06-16 5.0 MEDIUM N/A
bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the "file" parameter.
CVE-1999-1548 1 Cabletron 1 Smartswitch Router 8000 Firmware 2026-06-16 5.0 MEDIUM N/A
Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceeding that limit.
CVE-1999-1546 1 Ibm 1 Navio Nc Browser 2026-06-16 5.0 MEDIUM N/A
netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.
CVE-1999-1545 1 Joes Own Editor 1 Joe 2026-06-16 2.1 LOW N/A
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.
CVE-1999-1544 1 Microsoft 1 Internet Information Server 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.
CVE-1999-1543 1 Apple 1 Macos 2026-06-16 4.6 MEDIUM N/A
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
CVE-1999-1542 1 Redhat 1 Linux 2026-06-16 10.0 HIGH N/A
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.
CVE-1999-1541 1 Cactus Software 1 Shell-lock 2026-06-16 7.2 HIGH N/A
shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file.
CVE-1999-1540 1 Cactus Software 1 Shell-lock 2026-06-16 2.1 LOW N/A
shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.
CVE-1999-1539 1 Qpc Software 2 Qvt Net, Qvt Term Plus 2026-06-16 7.5 HIGH N/A
Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long (1) user name or (2) password.
CVE-1999-1538 1 Microsoft 1 Internet Information Server 2026-06-16 2.1 LOW N/A
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.
CVE-1999-1537 1 Microsoft 1 Internet Information Server 2026-06-16 5.0 MEDIUM N/A
IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.
CVE-1999-1536 1 Acushop 1 Salesbuilder 2026-06-16 7.2 HIGH N/A
.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.