Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1998-12-29 CVE-1999-1159 Unspecified vulnerability in SSH Ssh2 2.0.11
SSH 2.0.11 and earlier allows local users to request remote forwarding from privileged ports without being root.
local
low complexity
ssh
4.6
1998-12-27 CVE-1999-1188 Unspecified vulnerability in Oracle Mysql 3.21
mysqld in MySQL 3.21 creates log files with world-readable permissions, which allows local users to obtain passwords for users who are added to the user database.
local
low complexity
oracle
4.6
1998-12-26 CVE-1999-1281 Unspecified vulnerability in Winddance Networks Corporation Breeze Network Server
Development version of Breeze Network Server allows remote attackers to cause the system to reboot by accessing the configbreeze CGI program.
network
low complexity
winddance-networks-corporation
5.0
1998-12-24 CVE-1999-1277 Unspecified vulnerability in Backweb Technologies Backweb Client
BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key, which could allow other local users to gain privileges by reading the password.
local
low complexity
backweb-technologies
4.6
1998-12-10 CVE-1999-1282 Unspecified vulnerability in Realnetworks Realsystem G2 Server
RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows local users to gain privileges.
local
low complexity
realnetworks
4.6
1998-12-01 CVE-1999-0478 Unspecified vulnerability in Sendmail
Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
network
low complexity
sendmail
5.0
1998-12-01 CVE-1999-0463 Unspecified vulnerability in L0Pht L0Phtcrack 2.5
Remote attackers can perform a denial of service using IRIX fcagent.
network
low complexity
l0pht
5.0
1998-12-01 CVE-1999-0342 Unspecified vulnerability in PAM
Linux PAM modules allow local users to gain root access using temporary files.
local
high complexity
pam
6.2
1998-11-19 CVE-1999-1288 Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program.
local
low complexity
samba caldera redhat turbolinux
4.6
1998-11-18 CVE-1999-0780 KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.
local
low complexity
freebsd kde linux
4.6