Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-08-25 CVE-1999-0872 Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.
local
low complexity
paul-vixie caldera debian redhat
7.2
1999-08-25 CVE-1999-0769 Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable.
local
low complexity
paul-vixie caldera debian redhat
7.2
1999-08-25 CVE-1999-0768 Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
network
low complexity
redhat suse
7.5
1999-08-24 CVE-1999-1052 Unspecified vulnerability in Microsoft Frontpage
Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which allows remote attackers to read possibly sensitive information submitted by other users.
network
low complexity
microsoft
5.0
1999-08-22 CVE-2000-0374 Unspecified vulnerability in Caldera Openlinux 2.2/2.3
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions.
network
low complexity
caldera
critical
10.0
1999-08-22 CVE-1999-1064 Buffer Overflow vulnerability in WindowMaker
Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (argv[0]).
network
low complexity
windowmaker
critical
10.0
1999-08-22 CVE-1999-0878 Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR.
network
low complexity
beroftpd washington-university
critical
10.0
1999-08-21 CVE-2000-0355 pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
network
low complexity
bent-bagger redhat suse
7.5
1999-08-20 CVE-2000-0325 Unspecified vulnerability in Microsoft JET 3.5/3.5.1
The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability.
local
low complexity
microsoft
7.2
1999-08-20 CVE-1999-1565 Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
local
low complexity
earl-hood debian
4.6