Vulnerabilities > Microsoft > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-04-01 CVE-1999-0469 Unspecified vulnerability in Microsoft Internet Explorer 5.0
Internet Explorer 5.0 allows window spoofing, allowing a remote attacker to spoof a legitimate web site and capture information from the client.
network
low complexity
microsoft
5.0
1999-03-08 CVE-1999-1254 Unspecified vulnerability in Microsoft Windows 95, Windows 98 and Windows NT
Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables.
network
low complexity
microsoft
5.0
1999-03-01 CVE-1999-0386 Unspecified vulnerability in Microsoft Frontpage and Personal web Server
Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL.
network
low complexity
microsoft
5.0
1999-02-20 CVE-1999-0376 Unspecified vulnerability in Microsoft Windows NT 3.5.1/4.0
Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.
local
low complexity
microsoft
4.6
1999-02-11 CVE-1999-1375 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.
network
low complexity
microsoft
5.0
1999-02-06 CVE-1999-1201 Unspecified vulnerability in Microsoft Windows 95 and Windows 98
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.
network
low complexity
microsoft
5.0
1999-01-25 CVE-1999-0357 Unspecified vulnerability in Microsoft Windows 98
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets.
network
low complexity
microsoft
5.0
1999-01-24 CVE-1999-1544 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.
network
low complexity
microsoft
5.0
1999-01-01 CVE-1999-0593 Unspecified vulnerability in Microsoft Windows NT
The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.
local
low complexity
microsoft
4.9
1999-01-01 CVE-1999-0578 Unspecified vulnerability in Microsoft Windows NT
A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.
local
low complexity
microsoft
4.6