Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1998-04-03 CVE-1999-0270 Unspecified vulnerability in SGI Irix 6.2/6.3/6.4
Directory traversal vulnerability in pfdispaly.cgi program (sometimes referred to as "pfdisplay") for SGI's Performer API Search Tool (performer_tools) allows remote attackers to read arbitrary files.
network
low complexity
sgi
5.0
1998-04-02 CVE-1999-1183 Unspecified vulnerability in SGI Irix 6.3/6.4
System Manager sysmgr GUI in SGI IRIX 6.4 and 6.3 allows remote attackers to execute commands by providing a trojan horse (1) runtask or (2) runexec descriptor file, which is used to execute a System Manager Task when the user's Mailcap entry supports the x-sgi-task or x-sgi-exec type.
network
high complexity
sgi
7.6
1998-04-01 CVE-1999-0551 Unspecified vulnerability in HP Openmail 4.1/5.1/5.10
HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests.
local
low complexity
hp
4.6
1998-04-01 CVE-1999-0537 A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc.
network
low complexity
netscape microsoft
7.5
1998-04-01 CVE-1999-0507 An account on a router, firewall, or other network device has a guessable password.
network
low complexity
7.5
1998-04-01 CVE-1999-0257 Unspecified vulnerability in Linux Kernel 2.6.20.1
Nestea variation of teardrop IP fragmentation denial of service.
network
low complexity
linux
5.0
1998-04-01 CVE-1999-0098 Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
network
low complexity
apple pmail seattlelab
critical
10.0
1998-04-01 CVE-1999-0003 Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
network
low complexity
tritreal sgi hp ibm sun
critical
10.0
1998-03-20 CVE-1999-0960 Unspecified vulnerability in SGI Irix
IRIX cdplayer allows local users to create directories in arbitrary locations via a command line option.
local
low complexity
sgi
7.2
1998-03-18 CVE-1999-1075 Unspecified vulnerability in IBM AIX 4.1.5
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
network
low complexity
ibm
5.0