Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
1999-04-23 CVE-1999-0492 The ffingerd 1.19 allows remote attackers to identify users on the target system based on its responses.
network
low complexity
critical
10.0
1999-04-09 CVE-1999-0801 Unspecified vulnerability in BMC Patrol Agent 3.2.3
BMC Patrol allows remote attackers to gain access to an agent by spoofing frames.
network
low complexity
bmc
critical
10.0
1999-04-01 CVE-1999-0443 Unspecified vulnerability in BMC Patrol Agent 3.2.3
Patrol management software allows a remote attacker to conduct a replay attack to steal the administrator password.
network
low complexity
bmc
critical
10.0
1999-03-01 CVE-1999-1046 Buffer Overflow DoS vulnerability in Ipswitch Imail 5.0
Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 8181.
network
low complexity
ipswitch
critical
10.0
1999-03-01 CVE-1999-0426 Incorrect Default Permissions vulnerability in Suse Linux 6.0
The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
network
low complexity
suse CWE-276
critical
9.8
1999-02-25 CVE-1999-0408 Unspecified vulnerability in SUN Cobalt RAQ
Files created from interactive shell sessions in Cobalt RaQ microservers (e.g.
network
low complexity
sun
critical
10.0
1999-02-21 CVE-1999-1049 Unspecified vulnerability in Broadcom Arcserve Backup 6.5
ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.
network
low complexity
broadcom
critical
10.0
1999-02-17 CVE-1999-1405 Unspecified vulnerability in IBM AIX
snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.
network
low complexity
ibm
critical
10.0
1999-02-10 CVE-1999-0353 Unspecified vulnerability in HP Hp-Ux
rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory.
network
hp
critical
9.3
1999-02-09 CVE-1999-0407 Unspecified vulnerability in Microsoft Internet Information Server 4.0
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.
network
low complexity
microsoft
critical
10.0