Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1998-12-24 CVE-1999-1277 Unspecified vulnerability in Backweb Technologies Backweb Client
BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key, which could allow other local users to gain privileges by reading the password.
local
low complexity
backweb-technologies
4.6
1998-12-18 CVE-1999-1173 Unspecified vulnerability in Corel Wordperfect 8
Corel Word Perfect 8 for Linux creates a temporary working directory with world-writable permissions, which allows local users to (1) modify Word Perfect behavior by modifying files in the working directory, or (2) modify files of other users via a symlink attack.
local
low complexity
corel
2.1
1998-12-17 CVE-1999-0188 Unspecified vulnerability in SUN Solaris and Sunos
The passwd command in Solaris can be subjected to a denial of service.
local
low complexity
sun
7.2
1998-12-12 CVE-1999-0139 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in Solaris x86 mkcookie allows local users to obtain root access.
local
low complexity
sun
7.2
1998-12-10 CVE-1999-1282 Unspecified vulnerability in Realnetworks Realsystem G2 Server
RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows local users to gain privileges.
local
low complexity
realnetworks
4.6
1998-12-07 CVE-1999-1276 fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device.
local
low complexity
debian linux
7.2
1998-12-04 CVE-1999-1147 Unspecified vulnerability in Platinum Policy Compliance Manager 7.0
Buffer overflow in Platinum Policy Compliance Manager (PCM) 7.0 allows remote attackers to execute arbitrary commands via a long string to the Agent port (1827), which is handled by smaxagent.exe.
network
low complexity
platinum
7.5
1998-12-04 CVE-1999-0798 Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
network
low complexity
bsdi freebsd openbsd redhat sco
critical
10.0
1998-12-03 CVE-1999-1280 Unspecified vulnerability in Hummingbird Exceed 6.0.1.0
Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file.
network
low complexity
hummingbird
7.5
1998-12-03 CVE-1999-0937 BNBForm allows remote attackers to read arbitrary files via the automessage hidden form variable.
network
low complexity
critical
10.0