Vulnerabilities > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
1999-09-10 | CVE-1999-1575 | Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0 The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands. | 5.1 |
1999-09-10 | CVE-1999-0910 | Unspecified vulnerability in Microsoft products Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvertently used by a different user. | 5.0 |
1999-09-09 | CVE-1999-1377 | Unspecified vulnerability in Matt Wright Download.Cgi 1.0 Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. | 5.0 |
1999-09-07 | CVE-1999-1353 | Unspecified vulnerability in Nosque Msgcore 2.14 Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges. | 4.6 |
1999-09-05 | CVE-1999-1562 | Unspecified vulnerability in Gftp FTP Client 1.13 gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file. | 4.6 |
1999-09-03 | CVE-1999-0925 | Unspecified vulnerability in Messagemedia Unitymail UnityMail allows remote attackers to conduct a denial of service via a large number of MIME headers. | 5.0 |
1999-09-02 | CVE-1999-1356 | Unspecified vulnerability in Compaq Smartstart 4.50 Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy. | 4.6 |
1999-09-02 | CVE-1999-0685 | Unspecified vulnerability in Netscape Communicator Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option. | 5.1 |
1999-09-01 | CVE-1999-0670 | Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0 Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands. | 4.0 |
1999-09-01 | CVE-1999-0669 | Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0 The Eyedog ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy. | 4.0 |