Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1999-07-15 CVE-1999-1086 Unspecified vulnerability in Novell Netware
Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC fragmented packets that make NetWare Core Protocol (NCP) calls.
network
low complexity
novell
critical
10.0
1999-07-14 CVE-1999-1545 Unspecified vulnerability in Joes OWN Editor JOE 2.8
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.
local
low complexity
joes-own-editor
2.1
1999-07-13 CVE-1999-1460 Unspecified vulnerability in BMC Patrol Agent
BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program.
local
low complexity
bmc
7.2
1999-07-11 CVE-1999-1166 Unspecified vulnerability in Linux Kernel 2.0.37
Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory.
local
low complexity
linux
7.2
1999-07-10 CVE-1999-1543 Unspecified vulnerability in Apple Macos
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
local
low complexity
apple
4.6
1999-07-09 CVE-1999-0809 Unspecified vulnerability in Netscape Communicator 4.0
Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
network
low complexity
netscape
5.0
1999-07-07 CVE-1999-1537 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.
network
low complexity
microsoft
5.0
1999-07-06 CVE-1999-1478 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the [ character.
network
low complexity
microsoft
5.0
1999-07-06 CVE-1999-0752 Unspecified vulnerability in Netscape Enterprise Server
Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.
network
low complexity
netscape
5.0
1999-07-02 CVE-1999-1394 Unspecified vulnerability in BSD 4.4
BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.
local
low complexity
bsd
2.1