Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-09-10 CVE-1999-1575 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands.
network
high complexity
microsoft
5.1
1999-09-10 CVE-1999-0910 Unspecified vulnerability in Microsoft products
Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvertently used by a different user.
network
low complexity
microsoft
5.0
1999-09-09 CVE-1999-1377 Unspecified vulnerability in Matt Wright Download.Cgi 1.0
Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a ..
network
low complexity
matt-wright
5.0
1999-09-07 CVE-1999-1353 Unspecified vulnerability in Nosque Msgcore 2.14
Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges.
local
low complexity
nosque
4.6
1999-09-05 CVE-1999-1562 Unspecified vulnerability in Gftp FTP Client 1.13
gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file.
local
low complexity
gftp
4.6
1999-09-03 CVE-1999-0925 Unspecified vulnerability in Messagemedia Unitymail
UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers.
network
low complexity
messagemedia
5.0
1999-09-02 CVE-1999-1356 Unspecified vulnerability in Compaq Smartstart 4.50
Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy.
local
low complexity
compaq
4.6
1999-09-02 CVE-1999-0685 Unspecified vulnerability in Netscape Communicator
Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.
network
high complexity
netscape
5.1
1999-09-01 CVE-1999-0670 Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0
Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands.
network
high complexity
microsoft
4.0
1999-09-01 CVE-1999-0669 Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0
The Eyedog ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy.
network
high complexity
microsoft
4.0