Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-04-21 CVE-1999-0488 Unspecified vulnerability in Microsoft Internet Explorer 4.0/4.0.1/5.0
Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.
network
low complexity
microsoft
7.5
1999-04-21 CVE-1999-0466 Unspecified vulnerability in Netbsd
The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and earlier allows a local user to read or write arbitrary files on the disk associated with that device.
local
low complexity
netbsd
7.2
1999-04-20 CVE-1999-0607 Unspecified vulnerability in I-Soft Quikstore
quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access control, which allows remote attackers to obtain the cleartext administrator password and gain privileges.
network
low complexity
i-soft
5.0
1999-04-20 CVE-1999-0604 Unspecified vulnerability in Selena SOL Selena SOL Webstore 1.0
An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private information.
network
low complexity
selena-sol
5.0
1999-04-19 CVE-1999-0684 Unspecified vulnerability in HP Sendmail 8.8.6
Denial of service in Sendmail 8.8.6 in HPUX.
network
low complexity
hp
5.0
1999-04-15 CVE-1999-1244 Unspecified vulnerability in Darren Reed Ipfilter
IPFilter 3.2.3 through 3.2.10 allows local users to modify arbitrary files via a symlink attack on the saved output file.
local
low complexity
darren-reed
7.2
1999-04-14 CVE-1999-1369 Unspecified vulnerability in Realnetworks Realserver 6.0.3.353
Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.
local
low complexity
realnetworks
4.6
1999-04-12 CVE-1999-0446 Unspecified vulnerability in Netbsd 1.3.1/1.3.2/1.3.3
Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS.
local
low complexity
netbsd
2.1
1999-04-12 CVE-1999-0444 Unspecified vulnerability in Microsoft Windows 95, Windows 98 and Windows NT
Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files.
network
low complexity
microsoft
5.0
1999-04-09 CVE-1999-1323 Unspecified vulnerability in Symantec Norton Antivirus
Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE.
local
low complexity
symantec
4.6