Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-12-31 CVE-1999-1222 Unspecified vulnerability in Microsoft Windows NT 4.0
Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup.
network
low complexity
microsoft
5.0
1999-12-31 CVE-1999-1177 Unspecified vulnerability in Lincoln D. Stein Nph-Publish
Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a ..
network
low complexity
lincoln-d-stein
5.0
1999-12-31 CVE-1999-1157 Denial-Of-Service vulnerability in Windows NT
Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface.
network
low complexity
microsoft
5.0
1999-12-31 CVE-1999-1148 Unspecified vulnerability in Microsoft Internet Information Server
FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many passive (PASV) connections at the same time.
network
low complexity
microsoft
5.0
1999-12-31 CVE-1999-1132 Unspecified vulnerability in Microsoft Windows NT 4.0
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.
network
low complexity
microsoft
5.0
1999-12-31 CVE-1999-1105 Unspecified vulnerability in Microsoft Windows 95
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrator logs in remotely, which allows remote attackers to read arbitrary files by mapping the network drive.
network
low complexity
microsoft
5.0
1999-12-31 CVE-1999-1104 Unspecified vulnerability in Microsoft Windows 95
Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords.
local
low complexity
microsoft
4.6
1999-12-31 CVE-1999-1093 Unspecified vulnerability in Microsoft Internet Explorer 4.0/4.0.1
Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page.
network
high complexity
microsoft
5.1
1999-12-31 CVE-1999-1084 Unspecified vulnerability in Microsoft Windows NT 4.0
The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.
local
low complexity
microsoft
4.6
1999-12-31 CVE-1999-1043 Unspecified vulnerability in Microsoft Exchange Server 5.0/5.5
Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, which allows remote attackers to cause a denial of service (application error).
network
low complexity
microsoft
5.0