Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1997-09-08 CVE-1999-1275 Unspecified vulnerability in IBM Lotus CC Mail 8.0
Lotus cc:Mail release 8 stores the postoffice password in plaintext in a hidden file which has insecure permissions, which allows local users to gain privileges.
local
low complexity
ibm
4.6
1997-09-01 CVE-1999-1133 Unspecified vulnerability in HP Hp-Ux 10/9
HP-UX 9.x and 10.x running X windows may allow local attackers to gain privileges via (1) vuefile, (2) vuepad, (3) dtfile, or (4) dtpad, which do not authenticate users.
local
low complexity
hp
4.6
1997-09-01 CVE-1999-0191 Unspecified vulnerability in Microsoft Internet Information Server 3.0
IIS newdsn.exe CGI script allows remote users to overwrite files.
network
low complexity
microsoft
6.4
1997-09-01 CVE-1999-0183 Linux implementations of TFTP would allow access to files outside the restricted directory.
network
low complexity
tftp linux
6.4
1997-08-24 CVE-1999-1225 rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not.
network
low complexity
digital linux netbsd openbsd sun
5.0
1997-08-19 CVE-1999-1250 Unspecified vulnerability in Blue World Communications Lasso CGI
Vulnerability in CGI program in the Lasso application by Blue World, as used on WebSTAR and other servers, allows remote attackers to read arbitrary files.
network
low complexity
blue-world-communications
5.0
1997-08-13 CVE-1999-0024 DNS cache poisoning via BIND, by predictable query IDs.
network
low complexity
isc sco sun nec ibm bsdi
5.0
1997-08-01 CVE-1999-1262 Unspecified vulnerability in Netscape Communicator
Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the applet was loaded, which violates the Java security model and could allow remote attackers to conduct unauthorized activities.
network
high complexity
netscape
5.1
1997-08-01 CVE-1999-0566 Unspecified vulnerability in IBM AIX
An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.
network
low complexity
ibm
5.0
1997-07-31 CVE-1999-1308 Unspecified vulnerability in HP Hp-Ux 10.20
Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could allow local users to gain privileges.
local
low complexity
hp
4.6