Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1997-07-10 CVE-1999-1463 Unspecified vulnerability in Microsoft Windows NT 3.5.1/4.0
Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.
network
low complexity
microsoft
5.0
1997-07-08 CVE-1999-0196 Unspecified vulnerability in Webgais Development Team Webgais 1.0
websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver parameter ($VAR_receiver variable).
network
low complexity
webgais-development-team
5.0
1997-07-04 CVE-1999-1326 Unspecified vulnerability in Washington University Wu-Ftpd 2.4
wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files.
network
low complexity
washington-university
5.0
1997-07-01 CVE-1999-0628 The rwho/rwhod service is running, which exposes machine status and user information.
network
low complexity
netbsd ibm freebsd linux
5.0
1997-07-01 CVE-1999-0195 Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1.
network
low complexity
sgi linux
5.0
1997-07-01 CVE-1999-0184 Unspecified vulnerability in ISC Bind 9.4.0
When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records.
network
low complexity
isc
6.4
1997-07-01 CVE-1999-0156 Unspecified vulnerability in Washington University Wu-Ftpd
wu-ftpd FTP daemon allows any user and password combination.
local
low complexity
washington-university
4.6
1997-07-01 CVE-1999-0153 Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
network
low complexity
microsoft sco
5.0
1997-07-01 CVE-1999-0111 Unspecified vulnerability in IBM AIX
RIP v1 is susceptible to spoofing.
network
low complexity
ibm
5.0
1997-07-01 CVE-1999-0076 Unspecified vulnerability in Washington University Wu-Ftpd
Buffer overflow in wu-ftp from PASV command causes a core dump.
network
low complexity
washington-university
5.0