Vulnerabilities > IBM > Medium

DATE CVE VULNERABILITY TITLE RISK
1998-10-02 CVE-1999-1404 Multiple vulnerability in IBM Tivoli OPC Tracker Agent 1.0X/2.0X/3.0X
IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.
network
low complexity
ibm
5.0
1998-04-08 CVE-1999-0010 Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
network
low complexity
data-general isc ibm nec netbsd redhat sco sun
5.0
1998-03-18 CVE-1999-1075 Unspecified vulnerability in IBM AIX 4.1.5
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
network
low complexity
ibm
5.0
1998-02-01 CVE-1999-0087 Unspecified vulnerability in IBM AIX 4.1/4.2/4.3
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.
network
low complexity
ibm
5.0
1998-01-08 CVE-1999-0086 Unspecified vulnerability in IBM AIX
AIX routed allows remote users to modify sensitive files.
network
low complexity
ibm
5.0
1998-01-05 CVE-1999-0513 ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
network
low complexity
sun digital ibm freebsd linux hp netbsd
5.0
1997-10-29 CVE-1999-0094 Unspecified vulnerability in IBM AIX
AIX piodmgrsu command allows local users to gain additional group privileges.
local
low complexity
ibm
4.6
1997-09-08 CVE-1999-1275 Unspecified vulnerability in IBM Lotus CC Mail 8.0
Lotus cc:Mail release 8 stores the postoffice password in plaintext in a hidden file which has insecure permissions, which allows local users to gain privileges.
local
low complexity
ibm
4.6
1997-08-13 CVE-1999-0024 DNS cache poisoning via BIND, by predictable query IDs.
network
low complexity
isc sco sun nec ibm bsdi
5.0
1997-08-01 CVE-1999-0566 Unspecified vulnerability in IBM AIX
An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.
network
low complexity
ibm
5.0