| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-1999-1324 | Cri | 0.64 | 9.8 | 0.01 | Dec 31, 1999 | VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which makes it easier for attackers to conduct brute force password guessing. | ||
| CVE-1999-1588 | Cri | 0.68 | 9.8 | 0.18 | Dec 31, 1999 | Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with "NLPS:002:002:" to the listen (aka System V listener) port, TCP port 2766. | ||
| CVE-1999-0426 | Cri | 0.67 | 9.8 | 0.08 | Mar 1, 1999 | The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing. | ||
| CVE-1999-0006 | Cri | 0.67 | 9.8 | 0.08 | Jul 14, 1998 | Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command. | ||
| CVE-1999-0511 | Cri | 0.60 | 9.1 | 0.08 | Jan 1, 1997 | IP forwarding is enabled on a machine which is not a router or firewall. | ||
| CVE-1999-0043 | Cri | 0.64 | 9.8 | 0.02 | Dec 4, 1996 | Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others. | ||
| CVE-1999-0066 | Cri | 0.68 | 9.8 | 0.22 | Jul 31, 1995 | AnyForm CGI remote execution. |
- risk 0.64cvss 9.8epss 0.01
VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which makes it easier for attackers to conduct brute force password guessing.
- risk 0.68cvss 9.8epss 0.18
Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with "NLPS:002:002:" to the listen (aka System V listener) port, TCP port 2766.
- risk 0.67cvss 9.8epss 0.08
The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
- risk 0.67cvss 9.8epss 0.08
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
- risk 0.60cvss 9.1epss 0.08
IP forwarding is enabled on a machine which is not a router or firewall.
- risk 0.64cvss 9.8epss 0.02
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
- risk 0.68cvss 9.8epss 0.22
AnyForm CGI remote execution.