Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1997-08-24 CVE-1999-1220 Unspecified vulnerability in Great Circle Associates Majordomo
Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header.
network
low complexity
great-circle-associates
7.5
1997-08-20 CVE-1999-1399 Unspecified vulnerability in SGI Irix 6.2
spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.
local
low complexity
sgi
7.2
1997-08-19 CVE-1999-1250 Unspecified vulnerability in Blue World Communications Lasso CGI
Vulnerability in CGI program in the Lasso application by Blue World, as used on WebSTAR and other servers, allows remote attackers to read arbitrary files.
network
low complexity
blue-world-communications
5.0
1997-08-13 CVE-1999-0024 DNS cache poisoning via BIND, by predictable query IDs.
network
low complexity
isc sco sun nec ibm bsdi
5.0
1997-08-11 CVE-1999-0152 Unspecified vulnerability in Data General DG UX
The DG/UX finger daemon allows remote command execution through shell metacharacters.
network
low complexity
data-general
7.5
1997-08-05 CVE-1999-1446 Unspecified vulnerability in Microsoft Internet Explorer 3.0
Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the "Clear History" option, and are not visible when the user browses the folders because of tailored displays.
local
low complexity
microsoft
2.1
1997-08-01 CVE-1999-1262 Unspecified vulnerability in Netscape Communicator
Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the applet was loaded, which violates the Java security model and could allow remote attackers to conduct unauthorized activities.
network
high complexity
netscape
5.1
1997-08-01 CVE-1999-0566 Unspecified vulnerability in IBM AIX
An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.
network
low complexity
ibm
5.0
1997-08-01 CVE-1999-0301 Unspecified vulnerability in SUN Solaris and Sunos
Buffer overflow in SunOS/Solaris ps command.
local
low complexity
sun
7.2
1997-08-01 CVE-1999-0238 Unspecified vulnerability in PHP 1.0/2.0/2.0B10
php.cgi allows attackers to read any file on the system.
network
low complexity
php
critical
10.0