Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1998-01-01 CVE-1999-0341 Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.
local
low complexity
debian slackware
7.2
1998-01-01 CVE-1999-0331 Unspecified vulnerability in Microsoft Internet Explorer 3.0.2/4.0/4.0.1
Buffer overflow in Internet Explorer 4.0(1).
network
low complexity
microsoft
7.5
1998-01-01 CVE-1999-0284 Classic Buffer Overflow vulnerability in multiple products
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
network
low complexity
ibm microsoft CWE-120
7.5
1998-01-01 CVE-1999-0279 Unspecified vulnerability in Excite EWS 1.1
Excite for Web Servers (EWS) allows remote command execution via shell metacharacters.
network
low complexity
excite
7.5
1998-01-01 CVE-1999-0273 Unspecified vulnerability in SUN Sunos 5.5.1
Denial of service through Solaris 2.5.1 telnet by sending ^D characters.
network
low complexity
sun
5.0
1998-01-01 CVE-1999-0239 Improper Handling of Case Sensitivity vulnerability in Netscape Fasttrack Server 3.01
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
network
low complexity
netscape CWE-178
7.5
1998-01-01 CVE-1999-0114 Unspecified vulnerability in ELM Development Group ELM 2.4
Local users can execute commands as other users, and read other users' files, through the filter command in the Elm elm-2.4 mail package using a symlink attack.
local
low complexity
elm-development-group
4.6
1997-12-30 CVE-1999-0107 Unspecified vulnerability in Apache Http Server
Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters.
network
low complexity
apache
5.0
1997-12-29 CVE-1999-1274 Unspecified vulnerability in Ipass Roamserver 3.1
iPass RoamServer 3.1 creates temporary files with world-writable permissions.
network
low complexity
ipass
6.4
1997-12-24 CVE-1999-1230 Unspecified vulnerability in ID Software Quake 2
Quake 2 server allows remote attackers to cause a denial of service via a spoofed UDP packet with a source address of 127.0.0.1, which causes the server to attempt to connect to itself.
network
low complexity
id-software
5.0