Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-09-01 CVE-1999-0670 Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0
Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands.
network
high complexity
microsoft
4.0
1999-09-01 CVE-1999-0669 Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0
The Eyedog ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy.
network
high complexity
microsoft
4.0
1999-08-31 CVE-1999-1515 Denial of Service vulnerability in Tenfour TFS Gateway 4.0
A non-default configuration in TenFour TFS Gateway 4.0 allows an attacker to cause a denial of service via messages with incorrect sender and recipient addresses, which causes the gateway to continuously try to return the message every 10 seconds.
network
low complexity
tenfour
5.0
1999-08-31 CVE-1999-0774 Unspecified vulnerability in Martin Stover Mars NWE 0.99
Buffer overflows in Mars NetWare Emulation (NWE, mars_nwe) package via long directory names.
local
low complexity
martin-stover
7.2
1999-08-30 CVE-1999-1513 Unspecified vulnerability in 3Com Superstack II HUB 2.10
Management information base (MIB) for a 3Com SuperStack II hub running software version 2.10 contains an object identifier (.1.3.6.1.4.1.43.10.4.2) that is accessible by a read-only community string, but lists the entire table of community strings, which could allow attackers to conduct unauthorized activities.
network
low complexity
3com
7.5
1999-08-30 CVE-1999-1354 Unspecified vulnerability in Softarc Firstclass Internet Server
E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.
local
low complexity
softarc
4.6
1999-08-27 CVE-1999-1016 Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.
network
low complexity
microsoft qualcomm
5.0
1999-08-27 CVE-1999-0911 Remote Buffer Overflow in ProFTPD
Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.
network
low complexity
proftpd-project
critical
10.0
1999-08-26 CVE-1999-0939 Unspecified vulnerability in Debian Linux 2.1/2.2
Denial of service in Debian IRC Epic/epic4 client via a long string.
network
low complexity
debian
5.0
1999-08-25 CVE-1999-1235 Unspecified vulnerability in Microsoft Internet Explorer 5.0
Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.
local
low complexity
microsoft
4.6