Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1998-07-16 CVE-1999-1149 Unspecified vulnerability in Computer Software Manufaktur CSM Proxy 4.1
Buffer overflow in CSM Proxy 4.1 allows remote attackers to cause a denial of service (crash) via a long string to the FTP port.
network
low complexity
computer-software-manufaktur
5.0
1998-07-16 CVE-1999-0263 Unspecified vulnerability in SUN Sunos
Solaris SUNWadmap can be exploited to obtain root access.
local
low complexity
sun
4.6
1998-07-11 CVE-1999-1270 Unspecified vulnerability in KDE 1.0
KMail in KDE 1.0 provides a PGP passphrase as a command line argument to other programs, which could allow local users to obtain the passphrase and compromise the PGP keys of other users by viewing the arguments via programs that list process information, such as ps.
local
low complexity
kde
4.6
1998-07-03 CVE-1999-1202 Unspecified vulnerability in Startech Pop3 Proxy Server and Telnet Server
StarTech (1) POP3 proxy server and (2) telnet server allows remote attackers to cause a denial of service via a long USER command.
network
low complexity
startech
5.0
1998-07-01 CVE-1999-0494 Unspecified vulnerability in Wingate
Denial of service in WinGate proxy through a buffer overflow in POP3.
network
low complexity
wingate
5.0
1998-06-26 CVE-1999-0007 USE of A Broken OR Risky Cryptographic Algorithm vulnerability in multiple products
Information from SSL-encrypted sessions via PKCS #1.
network
low complexity
c2net hp microsoft netscape ssleay CWE-327
5.0
1998-06-16 CVE-1999-0783 Link Following vulnerability in Freebsd 2.2
FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file on an NFS file system.
local
low complexity
freebsd CWE-59
5.5
1998-06-12 CVE-1999-1085 Unspecified vulnerability in SSH Secure Shell 1.2.23/1.2.25
SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet, aka the "SSH insertion attack."
network
low complexity
ssh
5.0
1998-06-10 CVE-1999-1178 Unspecified vulnerability in Sambar Server 4.1
Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.
network
low complexity
sambar
5.0
1998-06-10 CVE-1999-0054 Unspecified vulnerability in SUN Solaris and Sunos
Sun's ftpd daemon can be subjected to a denial of service.
network
low complexity
sun
5.0