Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-11-23 CVE-1999-1527 Unspecified vulnerability in SUN Forte and Netbeans Developer
Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server.
network
low complexity
sun
7.5
1999-11-22 CVE-1999-1058 Unspecified vulnerability in Arcane Software Vermillion FTP Daemon 1.23
Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via several long CWD commands.
network
low complexity
arcane-software
7.5
1999-11-19 CVE-1999-1475 Unspecified vulnerability in Proftpd Project Proftpd 1.2
ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g.
local
low complexity
proftpd-project
4.6
1999-11-19 CVE-1999-0831 Denial of service in Linux syslogd via a large number of connections.
network
low complexity
cobalt sun debian suse
5.0
1999-11-17 CVE-1999-1519 Buffer Overflow DoS vulnerability in Gene6 G6 FTP Server 2.0
Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user name or (2) password.
network
low complexity
gene6
5.0
1999-11-17 CVE-1999-1092 Unspecified vulnerability in Iain LEA TIN 1.40
tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file.
local
low complexity
iain-lea
4.6
1999-11-17 CVE-1999-0793 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
network
high complexity
microsoft
2.6
1999-11-16 CVE-1999-1549 Origin Validation Error vulnerability in Lynx Project Lynx 2.7/2.8
Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that causes Lynx to modify the user's configuration file and execute commands.
local
low complexity
lynx-project CWE-346
7.8
1999-11-16 CVE-1999-1508 Unspecified vulnerability in TEK products
Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by directly calling undocumented URLs such as ncl_items.html and ncl_subjects.html.
network
low complexity
tek
critical
10.0
1999-11-16 CVE-1999-1457 Unspecified vulnerability in Thttpd Http Server 1.90A
Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function.
network
low complexity
thttpd
7.5