Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1998-09-01 CVE-1999-0310 Unspecified vulnerability in SSH 1.2.25
SSH 1.2.25 on HP-UX allows access to new user accounts.
network
low complexity
ssh
7.5
1998-09-01 CVE-1999-0302 Unspecified vulnerability in SUN Solaris and Sunos
SunOS/Solaris FTP clients can be forced to execute arbitrary commands from a malicious FTP server.
network
low complexity
sun
7.5
1998-09-01 CVE-1999-0162 Unspecified vulnerability in Cisco IOS 11.2
The "established" keyword in some Cisco IOS software allowed an attacker to bypass filtering.
network
low complexity
cisco
5.0
1998-08-31 CVE-1999-0158 Unspecified vulnerability in Cisco PIX Firewall Software 4.1(6)/4.2(1)
Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve any file whose name and location is known.
network
low complexity
cisco
5.0
1998-08-31 CVE-1999-0065 Unspecified vulnerability in SUN Solaris and Sunos
Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands.
network
low complexity
sun
7.5
1998-08-27 CVE-1999-1041 Unspecified vulnerability in SCO Openserver and Unix
Buffer overflow in mscreen on SCO OpenServer 5.0 and SCO UNIX 3.2v4 allows a local user to gain root access via (1) a long TERM environmental variable and (2) a long entry in the .mscreenrc file.
local
low complexity
sco
7.2
1998-08-23 CVE-1999-1417 Unspecified vulnerability in Inso Answerbook2
Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged.
network
low complexity
inso
7.5
1998-08-23 CVE-1999-1416 Unspecified vulnerability in Inso Dwhttpd 3.1A4
AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service (resource exhaustion) via an HTTP POST request with a large content-length.
network
low complexity
inso
5.0
1998-08-18 CVE-1999-0157 Unspecified vulnerability in Cisco IOS and PIX Firewall Software
Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service.
network
low complexity
cisco
5.0
1998-08-14 CVE-1999-1283 Unspecified vulnerability in Opera Software Opera web Browser 3.2.1
Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra / in the http:// tag.
network
low complexity
opera-software
5.0