Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-01-01 CVE-1999-0656 Configuration vulnerability in Linux Kernel
The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.
network
low complexity
linux CWE-16
5.0
1999-01-01 CVE-1999-0650 The netstat service is running, which provides sensitive information to remote attackers.
network
low complexity
5.0
1999-01-01 CVE-1999-0593 Unspecified vulnerability in Microsoft Windows NT
The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.
local
low complexity
microsoft
4.9
1999-01-01 CVE-1999-0578 Unspecified vulnerability in Microsoft Windows NT
A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.
local
low complexity
microsoft
4.6
1999-01-01 CVE-1999-0520 A system-critical NETBIOS/SMB share has inappropriate access control.
network
low complexity
6.4
1999-01-01 CVE-1999-0453 Information Exposure vulnerability in Cisco Router
An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol (CDP).
network
low complexity
cisco CWE-200
5.0
1999-01-01 CVE-1999-0448 Unspecified vulnerability in Microsoft Internet Information Server 4.0
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.
network
low complexity
microsoft
5.0
1999-01-01 CVE-1999-0398 Unspecified vulnerability in SSH and Ssh2
In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.
local
low complexity
ssh
4.6
1999-01-01 CVE-1999-0395 Unspecified vulnerability in Backweb Technologies Backweb Polite Agent Protocol
A race condition in the BackWeb Polite Agent Protocol allows an attacker to spoof a BackWeb server.
network
high complexity
backweb-technologies
5.1
1999-01-01 CVE-1999-0393 Unspecified vulnerability in Eric Allman Sendmail 8.8/8.9.2
Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of headers.
network
low complexity
eric-allman
5.0