Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-07-19 CVE-1999-1011 Permissions, Privileges, and Access Controls vulnerability in Microsoft products
The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands.
network
low complexity
microsoft CWE-264
critical
10.0
1999-07-19 CVE-1999-0692 The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges.
network
low complexity
sgi cray
critical
10.0
1999-07-15 CVE-1999-1518 Denial of Service vulnerability in Multiple Vendor Shared Memory
Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults.
network
low complexity
freebsd netbsd
5.0
1999-07-15 CVE-1999-1086 Unspecified vulnerability in Novell Netware
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.
network
low complexity
novell
critical
10.0
1999-07-14 CVE-1999-1545 Unspecified vulnerability in Joes OWN Editor JOE 2.8
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.
local
low complexity
joes-own-editor
2.1
1999-07-13 CVE-1999-1460 Unspecified vulnerability in BMC Patrol Agent
BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program.
local
low complexity
bmc
7.2
1999-07-11 CVE-1999-1166 Unspecified vulnerability in Linux Kernel 2.0.37
Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory.
local
low complexity
linux
7.2
1999-07-10 CVE-1999-1543 Unspecified vulnerability in Apple Macos
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
local
low complexity
apple
4.6
1999-07-09 CVE-1999-0809 Unspecified vulnerability in Netscape Communicator 4.0
Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
network
low complexity
netscape
5.0
1999-07-07 CVE-1999-1537 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.
network
low complexity
microsoft
5.0