Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
1998-04-08 CVE-1999-1503 Unspecified vulnerability in NFR 1.5/1.6
Network Flight Recorder (NFR) 1.5 and 1.6 allows remote attackers to cause a denial of service in nfrd (crash) via a TCP packet with a null header and data field.
network
low complexity
nfr
5.0
1998-04-08 CVE-1999-1501 Unspecified vulnerability in SGI Irix 6.3
(1) ipxchk and (2) ipxlink in SGI OS2 IRIX 6.3 does not properly clear the IFS environmental variable before executing system calls, which allows local users to execute arbitrary commands.
local
low complexity
sgi
4.6
1998-04-08 CVE-1999-1015 Unspecified vulnerability in Apple Appleshare Mail Server 5.0.3
Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.
network
low complexity
apple
5.0
1998-04-08 CVE-1999-0010 Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
network
low complexity
data-general isc ibm nec netbsd redhat sco sun
5.0
1998-04-03 CVE-1999-0270 Unspecified vulnerability in SGI Irix 6.2/6.3/6.4
Directory traversal vulnerability in pfdispaly.cgi program (sometimes referred to as "pfdisplay") for SGI's Performer API Search Tool (performer_tools) allows remote attackers to read arbitrary files.
network
low complexity
sgi
5.0
1998-04-01 CVE-1999-0551 Unspecified vulnerability in HP Openmail 4.1/5.1/5.10
HP OpenMail can be misconfigured to allow users to run arbitrary commands using malicious print requests.
local
low complexity
hp
4.6
1998-04-01 CVE-1999-0257 Unspecified vulnerability in Linux Kernel 2.6.20.1
Nestea variation of teardrop IP fragmentation denial of service.
network
low complexity
linux
5.0
1998-03-18 CVE-1999-1075 Unspecified vulnerability in IBM AIX 4.1.5
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
network
low complexity
ibm
5.0
1998-03-16 CVE-1999-0060 Unspecified vulnerability in Lucent products
Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port, which is used by the Java Configurator tool.
network
low complexity
lucent
5.0
1998-03-01 CVE-1999-0514 UDP messages to broadcast addresses are allowed, allowing for a Fraggle attack that can cause a denial of service by flooding the target.
network
low complexity
5.0