Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1998-07-29 CVE-1999-1406 Unspecified vulnerability in Redhat Linux 5.1
dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel.
local
low complexity
redhat
2.1
1998-07-28 CVE-1999-1447 Unspecified vulnerability in Microsoft Internet Explorer 4.0
Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag.
network
low complexity
microsoft
5.0
1998-07-28 CVE-1999-0941 Unspecified vulnerability in Mutt 0.95.6
Mutt mail client allows a remote attacker to execute commands via shell metacharacters.
network
low complexity
mutt
7.5
1998-07-25 CVE-1999-1070 Unspecified vulnerability in Xylogics Annex
Buffer overflow in ping CGI program in Xylogics Annex terminal service allows remote attackers to cause a denial of service via a long query parameter.
network
low complexity
xylogics
5.0
1998-07-20 CVE-1999-1421 Unspecified vulnerability in N-Base Nh208 and Nh215
NBase switches NH208 and NH215 run a TFTP server which allows remote attackers to send software updates to modify the switch or cause a denial of service (crash) by guessing the target filenames, which have default names.
network
low complexity
n-base
6.4
1998-07-20 CVE-1999-1420 Unspecified vulnerability in N-Base products
NBase switches NH2012, NH2012R, NH2015, and NH2048 have a back door password that cannot be disabled, which allows remote attackers to modify the switch's configuration.
network
low complexity
n-base
critical
10.0
1998-07-20 CVE-1999-1200 Unspecified vulnerability in Vintra Systems Smtp Mailserver
Vintra SMTP MailServer allows remote attackers to cause a denial of service via a malformed "EXPN *@" command.
network
low complexity
vintra-systems
5.0
1998-07-20 CVE-1999-0005 Arbitrary command execution via IMAP buffer overflow in authenticate command.
network
low complexity
netscape university-of-washington
critical
10.0
1998-07-16 CVE-1999-1558 Unspecified vulnerability in Digital Openvms and Digital Openvms AXP
Vulnerability in loginout in Digital OpenVMS 7.1 and earlier allows unauthorized access when external authentication is enabled.
network
low complexity
digital
7.5
1998-07-16 CVE-1999-1432 Unspecified vulnerability in SUN Solaris and Sunos
Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.
network
low complexity
sun
7.5