Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1998-06-10 CVE-1999-1178 Unspecified vulnerability in Sambar Server 4.1
Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.
network
low complexity
sambar
5.0
1998-06-10 CVE-1999-0054 Unspecified vulnerability in SUN Solaris and Sunos
Sun's ftpd daemon can be subjected to a denial of service.
network
low complexity
sun
5.0
1998-06-03 CVE-1999-1151 Unspecified vulnerability in Compaq Microcom 6000 Access Integrator Initial
Compaq/Microcom 6000 Access Integrator does not cause a session timeout after prompting for a username or password, which allows remote attackers to cause a denial of service by connecting to the integrator without providing a username or password.
network
low complexity
compaq-microcom
5.0
1998-06-02 CVE-1999-1443 Unspecified vulnerability in Micah Software Full Armor
Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass the desktop protection by (1) using <CTRL><ALT><DEL> and kill the process using the task manager, (2) booting the system from a separate disk, or (3) interrupting certain processes that execute while the system is booting.
local
low complexity
micah-software
4.6
1998-06-01 CVE-1999-0508 An account on a router, firewall, or other network device has a default, null, blank, or missing password.
local
low complexity
4.6
1998-06-01 CVE-1999-0501 A Unix account has a guessable password.
local
low complexity
4.6
1998-06-01 CVE-1999-0278 Unspecified vulnerability in Microsoft Internet Information Server and Windows NT
In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL.
network
low complexity
microsoft
5.0
1998-05-21 CVE-1999-0303 Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames.
local
low complexity
sun netbsd digital openbsd
4.6
1998-05-09 CVE-1999-1361 Unspecified vulnerability in Microsoft Windows NT 3.5.1/4.0
Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.
network
low complexity
microsoft
6.4
1998-05-07 CVE-1999-1044 Unspecified vulnerability in Digital Unix V4.0
Vulnerability in Advanced File System Utility (advfs) in Digital UNIX 4.0 through 4.0d allows local users to gain privileges.
local
low complexity
digital
4.6