Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1997-06-19 CVE-1999-1483 Unspecified vulnerability in Svgalib
Buffer overflow in zgv in svgalib 1.2.10 and earlier allows local users to execute arbitrary code via a long HOME environment variable.
local
low complexity
svgalib
4.6
1997-06-13 CVE-1999-1266 Unspecified vulnerability in Metamail Corporation Metamail
rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.
network
low complexity
metamail-corporation
5.0
1997-06-11 CVE-1999-0083 Unspecified vulnerability in SGI Irix
getcwd() file descriptor leak in FTP.
network
low complexity
sgi
5.0
1997-06-10 CVE-1999-0275 Unspecified vulnerability in Microsoft Windows NT
Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.
network
low complexity
microsoft
5.0
1997-06-01 CVE-1999-0281 Unspecified vulnerability in Microsoft products
Denial of service in IIS using long URLs.
network
low complexity
microsoft
5.0
1997-05-29 CVE-1999-0035 Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.
network
high complexity
gnu sgi
5.1
1997-05-23 CVE-1999-0259 Unspecified vulnerability in Infodrom Cfingerd 1.2.2
cfingerd lists all users on a system via search.**@target.
network
low complexity
infodrom
5.0
1997-05-13 CVE-1999-1184 Unspecified vulnerability in ELM Development Group ELM 2.3
Buffer overflow in Elm 2.4 and earlier allows local users to gain privileges via a long TERM environmental variable.
local
low complexity
elm-development-group
4.6
1997-05-09 CVE-1999-1410 Unspecified vulnerability in SGI Irix
addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.
local
high complexity
sgi
6.2
1997-05-07 CVE-1999-1398 Unspecified vulnerability in SGI Irix
Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.
local
high complexity
sgi
6.2