Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-08-30 CVE-1999-1354 Unspecified vulnerability in Softarc Firstclass Internet Server
E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.
local
low complexity
softarc
4.6
1999-08-27 CVE-1999-1016 Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.
network
low complexity
microsoft qualcomm
5.0
1999-08-26 CVE-1999-0939 Unspecified vulnerability in Debian Linux 2.1/2.2
Denial of service in Debian IRC Epic/epic4 client via a long string.
network
low complexity
debian
5.0
1999-08-25 CVE-1999-1235 Unspecified vulnerability in Microsoft Internet Explorer 5.0
Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.
local
low complexity
microsoft
4.6
1999-08-24 CVE-1999-1052 Unspecified vulnerability in Microsoft Frontpage
Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which allows remote attackers to read possibly sensitive information submitted by other users.
network
low complexity
microsoft
5.0
1999-08-20 CVE-1999-1565 Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
local
low complexity
earl-hood debian
4.6
1999-08-19 CVE-1999-0740 Unspecified vulnerability in Redhat Linux 4.2/5.2/6.0
Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable.
network
low complexity
redhat
6.4
1999-08-16 CVE-1999-0888 Unspecified vulnerability in Oracle Database Server and Oracle8I
dbsnmp in Oracle Intelligent Agent allows local users to gain privileges by setting the ORACLE_HOME environmental variable, which dbsnmp uses to find the nmiconf.tcl script.
local
low complexity
oracle
4.6
1999-08-16 CVE-1999-0746 A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to conduct a denial of service.
network
low complexity
slackware suse
5.0
1999-08-12 CVE-1999-1336 Unspecified vulnerability in 3Com Hiperarc 4.2.29
3Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 allows remote attackers to cause a denial of service (reboot) via a flood of IAC packets to the telnet port.
network
low complexity
3com
5.0