Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-07-30 CVE-1999-1130 Unspecified vulnerability in Netscape Enterprise Server
Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.
network
low complexity
netscape
5.0
1999-07-30 CVE-1999-0683 Unspecified vulnerability in Network Associates Gauntlet Firewall 5.0
Denial of service in Gauntlet Firewall via a malformed ICMP packet.
network
low complexity
network-associates
5.0
1999-07-23 CVE-1999-0224 Unspecified vulnerability in Microsoft Windows NT 4.0
Denial of service in Windows NT messenger service through a long username.
network
low complexity
microsoft
5.0
1999-07-21 CVE-1999-1338 Unspecified vulnerability in Delegate
Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.
network
low complexity
delegate
5.0
1999-07-21 CVE-1999-0811 Unspecified vulnerability in Samba 2.0.4
Buffer overflow in Samba smbd program via a malformed message command.
network
low complexity
samba
5.0
1999-07-19 CVE-1999-1378 Unspecified vulnerability in Dbmlparser.Exe
dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.
network
low complexity
dbmlparser-exe
5.0
1999-07-15 CVE-1999-1518 Denial of Service vulnerability in Multiple Vendor Shared Memory
Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults.
network
low complexity
freebsd netbsd
5.0
1999-07-10 CVE-1999-1543 Unspecified vulnerability in Apple Macos
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
local
low complexity
apple
4.6
1999-07-09 CVE-1999-0809 Unspecified vulnerability in Netscape Communicator 4.0
Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
network
low complexity
netscape
5.0
1999-07-07 CVE-1999-1537 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for normally unencrypted files, which will cause IIS to perform extra work to send the files over SSL.
network
low complexity
microsoft
5.0