Export limit exceeded: 399565 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (399565 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-1999-0428 1 Openssl 1 Openssl 2026-04-16 6.5 Medium
OpenSSL and SSLeay allow remote attackers to reuse SSL sessions and bypass access controls.
CVE-1999-0427 1 Qualcomm 3 Eudora, Eudora Light, Eudora Pro 2026-04-16 N/A
Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.
CVE-1999-0422 1 Netbsd 1 Netbsd 2026-04-16 N/A
In some cases, NetBSD 1.3.3 mount allows local users to execute programs in some file systems that have the "noexec" flag set.
CVE-1999-1285 1 Linux 1 Linux Kernel 2026-04-16 N/A
Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed.
CVE-1999-0421 1 Slackware 1 Slackware Linux 2026-04-16 N/A
During a reboot after an installation of Linux Slackware 3.6, a remote attacker can obtain root access by logging in to the root account without a password.
CVE-1999-0417 1 Sun 1 Sunos 2026-04-16 N/A
64 bit Solaris 7 procfs allows local users to perform a denial of service.
CVE-1999-0415 1 Cisco 1 Cisco 7xx Routers 2026-04-16 N/A
The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to change the router's configuration.
CVE-1999-0413 1 Sgi 1 Irix 2026-04-16 N/A
A buffer overflow in the SGI X server allows local users to gain root access through the X server font path.
CVE-2001-0553 1 Ssh 1 Secure Shell 2026-04-16 N/A
SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field.
CVE-1999-0412 1 Microsoft 2 Internet Information Server, Internet Information Services 2026-04-16 N/A
In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.
CVE-1999-1284 1 Puppets Place 1 Nukenabber 2026-04-16 N/A
NukeNabber allows remote attackers to cause a denial of service by connecting to the NukeNabber port (1080) without sending any data, which causes the CPU usage to rise to 100% from the report.exe program that is executed upon the connection.
CVE-2002-0537 1 Stepweb 1 Sws 2026-04-16 N/A
The admin.html file in StepWeb Search Engine (SWS) 2.5 stores passwords in links to manager.pl, which allows remote attackers who can access the admin.html file to gain administrative privileges to SWS.
CVE-1999-0411 1 Sco 1 Openserver 2026-04-16 N/A
Several startup scripts in SCO OpenServer Enterprise System v 5.0.4p, including S84rpcinit, S95nis, S85tcp, and S89nfs, are vulnerable to a symlink attack, allowing a local user to gain root access.
CVE-1999-0408 1 Sun 1 Cobalt Raq 2026-04-16 N/A
Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.
CVE-1999-1282 1 Realnetworks 1 Realsystem G2 Server 2026-04-16 N/A
RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows local users to gain privileges.
CVE-2002-0536 1 Phpgroupware 1 Phpgroupware 2026-04-16 N/A
PHPGroupware 0.9.12 and earlier, when running with the magic_quotes_gpc feature disabled, allows remote attackers to compromise the database via a SQL injection attack.
CVE-1999-1281 1 Winddance Networks Corporation 1 Breeze Network Server 2026-04-16 N/A
Development version of Breeze Network Server allows remote attackers to cause the system to reboot by accessing the configbreeze CGI program.
CVE-1999-0400 1 Linux 1 Linux Kernel 2026-04-16 N/A
Denial of service in Linux 2.2.0 running the ldd command on a core file.
CVE-1999-1280 1 Hummingbird 1 Exceed 2026-04-16 N/A
Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file.
CVE-1999-0399 1 Khaled Mardam-bey 1 Mirc 2026-04-16 N/A
The DCC server command in the Mirc 5.5 client doesn't filter characters from file names properly, allowing remote attackers to place a malicious file in a different location, possibly allowing the attacker to execute commands.