VYPR

CVEs

373,708 total · page 7460 of 7,475

  • CVE-1999-0512Jan 1, 1999
    risk 0.04cvss epss 0.12

    A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.

  • CVE-1999-0515Jan 1, 1999
    risk 0.00cvss epss 0.02

    An unrestricted remote trust relationship for Unix systems has been set up, e.g. by using a + sign in /etc/hosts.equiv.

  • CVE-1999-0520Jan 1, 1999
    risk 0.00cvss epss 0.01

    A system-critical NETBIOS/SMB share has inappropriate access control.

  • CVE-1999-0523Jan 1, 1999
    risk 0.00cvss epss 0.01

    ICMP echo (ping) is allowed from arbitrary hosts.

  • CVE-1999-0527Jan 1, 1999
    risk 0.00cvss epss 0.02

    The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory is writeable by world, a real password file is obtainable, or executable commands such as "ls" can be overwritten.

  • CVE-1999-0528Jan 1, 1999
    risk 0.00cvss epss 0.02

    A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of.

  • CVE-1999-0529Jan 1, 1999
    risk 0.00cvss epss 0.02

    A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x.x, 217.x.x.x, etc.

  • CVE-1999-0530Jan 1, 1999
    risk 0.00cvss epss 0.02

    A system is operating in "promiscuous" mode which allows it to perform packet sniffing.

  • CVE-1999-0539Jan 1, 1999
    risk 0.00cvss epss 0.02

    A trust relationship exists between two Unix hosts.

  • CVE-1999-0547Jan 1, 1999
    risk 0.00cvss epss 0.02

    An SSH server allows authentication through the .rhosts file.

  • CVE-1999-0548Jan 1, 1999
    risk 0.00cvss epss 0.02

    A superfluous NFS server is running, but it is not importing or exporting any file systems.

  • CVE-1999-0549Jan 1, 1999
    risk 0.00cvss epss 0.02

    Windows NT automatically logs in an administrator upon rebooting.

  • CVE-1999-0554Jan 1, 1999
    risk 0.04cvss epss 0.11

    NFS exports system-critical data to the world, e.g. / or a password file.

  • CVE-1999-0555Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Unix account with a name other than "root" has UID 0, i.e. root privileges.

  • CVE-1999-0556Jan 1, 1999
    risk 0.00cvss epss 0.02

    Two or more Unix accounts have the same UID.

  • CVE-1999-0559Jan 1, 1999
    risk 0.00cvss epss 0.02

    A system-critical Unix file or directory has inappropriate permissions.

  • CVE-1999-0560Jan 1, 1999
    risk 0.00cvss epss 0.06

    A system-critical Windows NT file or directory has inappropriate permissions.

  • CVE-1999-0561Jan 1, 1999
    risk 0.01cvss epss 0.08

    IIS has the #exec function enabled for Server Side Include (SSI) files.

  • CVE-1999-0564Jan 1, 1999
    risk 0.00cvss epss 0.02

    An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to become disabled.

  • CVE-1999-0565Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Sendmail alias allows input to be piped to a program.

  • CVE-1999-0568Jan 1, 1999
    risk 0.00cvss epss 0.02

    rpc.admind in Solaris is not running in a secure mode.

  • CVE-1999-0569Jan 1, 1999
    risk 0.00cvss epss 0.02

    A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file.

  • CVE-1999-0570Jan 1, 1999
    risk 0.00cvss epss 0.06

    Windows NT is not using a password filter utility, e.g. PASSFILT.DLL.

  • CVE-1999-0571Jan 1, 1999
    risk 0.00cvss epss 0.02

    A router's configuration service or management interface (such as a web server or telnet) is configured to allow connections from arbitrary hosts.

  • CVE-1999-0577Jan 1, 1999
    risk 0.00cvss epss 0.06

    A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories.

  • CVE-1999-0578Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.

  • CVE-1999-0579Jan 1, 1999
    risk 0.00cvss epss 0.06

    A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys.

  • CVE-1999-0580Jan 1, 1999
    risk 0.00cvss epss 0.02

    The HKEY_LOCAL_MACHINE key in a Windows NT system has inappropriate, system-critical permissions.

  • CVE-1999-0581Jan 1, 1999
    risk 0.01cvss epss 0.07

    The HKEY_CLASSES_ROOT key in a Windows NT system has inappropriate, system-critical permissions.

  • CVE-1999-0583Jan 1, 1999
    risk 0.00cvss epss 0.02

    There is a one-way or two-way trust relationship between Windows NT domains.

  • CVE-1999-0584Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Windows NT file system is not NTFS.

  • CVE-1999-0586Jan 1, 1999
    risk 0.00cvss epss 0.01

    A network service is running on a nonstandard port.

  • CVE-1999-0587Jan 1, 1999
    risk 0.00cvss epss 0.02

    A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data.

  • CVE-1999-0588Jan 1, 1999
    risk 0.00cvss epss 0.02

    A filter in a router or firewall allows unusual fragmented packets.

  • CVE-1999-0589Jan 1, 1999
    risk 0.00cvss epss 0.02

    A system-critical Windows NT registry key has inappropriate permissions.

  • CVE-1999-0591Jan 1, 1999
    risk 0.00cvss epss 0.02

    An event log in Windows NT has inappropriate access permissions.

  • CVE-1999-0592Jan 1, 1999
    risk 0.00cvss epss 0.02

    The Logon box of a Windows NT system displays the name of the last user who logged in.

  • CVE-1999-0593Jan 1, 1999
    risk 0.00cvss epss 0.02

    The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.

  • CVE-1999-0594Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.

  • CVE-1999-0596Jan 1, 1999
    risk 0.00cvss epss 0.02

    A Windows NT log file has an inappropriate maximum size or retention period.

  • CVE-1999-0597Jan 1, 1999
    risk 0.00cvss epss 0.03

    A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.

  • CVE-1999-0598Jan 1, 1999
    risk 0.00cvss epss 0.02

    A network intrusion detection system (IDS) does not properly handle packets that are sent out of order, allowing an attacker to escape detection.

  • CVE-1999-0599Jan 1, 1999
    risk 0.00cvss epss 0.02

    A network intrusion detection system (IDS) does not properly handle packets with improper sequence numbers.

  • CVE-1999-0600Jan 1, 1999
    risk 0.00cvss epss 0.02

    A network intrusion detection system (IDS) does not verify the checksum on a packet.

  • CVE-1999-0601Jan 1, 1999
    risk 0.00cvss epss 0.02

    A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.

  • CVE-1999-0602Jan 1, 1999
    risk 0.00cvss epss 0.02

    A network intrusion detection system (IDS) does not properly reassemble fragmented packets.

  • CVE-1999-0603Jan 1, 1999
    risk 0.00cvss epss 0.02

    In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System Operators, etc.

  • CVE-1999-0611Jan 1, 1999
    risk 0.00cvss epss 0.02

    A system-critical Windows NT registry key has an inappropriate value.

  • CVE-1999-0613Jan 1, 1999
    risk 0.00cvss epss 0.01

    The rpc.sprayd service is running.

  • CVE-1999-0618Jan 1, 1999
    risk 0.00cvss epss 0.02

    The rexec service is running.