Search Results (29996 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-1999-0527 2026-04-16 N/A
The permissions for system-critical data in an anonymous FTP account are inappropriate. For example, the root directory is writeable by world, a real password file is obtainable, or executable commands such as "ls" can be overwritten.
CVE-1999-0548 2026-04-16 N/A
A superfluous NFS server is running, but it is not importing or exporting any file systems.
CVE-1999-0528 2026-04-16 N/A
A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of.
CVE-1999-0559 2026-04-16 N/A
A system-critical Unix file or directory has inappropriate permissions.
CVE-1999-0568 1 Sun 1 Solaris 2026-04-16 N/A
rpc.admind in Solaris is not running in a secure mode.
CVE-2001-1105 2 Cisco, Dell 2 Icdn, Bsafe Ssl-j 2026-04-16 N/A
RSA BSAFE SSL-J 3.0, 3.0.1 and 3.1, as used in Cisco iCND 2.0, caches session IDs from failed login attempts, which could allow remote attackers to bypass SSL client authentication and gain access to sensitive data by logging in after an initial failure.
CVE-2005-4618 1 Linux 1 Linux Kernel 2026-04-16 N/A
Buffer overflow in sysctl in the Linux Kernel 2.6 before 2.6.15 allows local users to corrupt user memory and possibly cause a denial of service via a long string, which causes sysctl to write a zero byte outside the buffer. NOTE: since the sysctl is called from a userland program that provides the argument, this might not be a vulnerability, unless a legitimate user-assisted or setuid scenario can be identified.
CVE-2006-3510 1 Microsoft 1 Ie 2026-04-16 N/A
The Remote Data Service Object (RDS.DataControl) in Microsoft Internet Explorer 6 on Windows 2000 allows remote attackers to cause a denial of service (crash) via a series of operations that result in an invalid length calculation when using SysAllocStringLen, then triggers a buffer over-read.
CVE-1999-0569 2026-04-16 N/A
A URL for a WWW directory allows auto-indexing, which provides a list of all files in that directory if it does not contain an index.html file.
CVE-1999-0571 2026-04-16 N/A
A router's configuration service or management interface (such as a web server or telnet) is configured to allow connections from arbitrary hosts.
CVE-1999-0578 1 Microsoft 1 Windows Nt 2026-04-16 N/A
A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.
CVE-1999-0584 2026-04-16 N/A
A Windows NT file system is not NTFS.
CVE-2006-3526 1 Sport-slo 1 Sport-slo Advanced Guestbook 2026-04-16 N/A
Multiple cross-site scripting (XSS) vulnerabilities in guestbook.php in Sport-slo Advanced Guestbook 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) name and (2) form parameters.
CVE-1999-0585 1 Microsoft 2 Windows 2000, Windows Nt 2026-04-16 N/A
A Windows NT administrator account has the default name of Administrator.
CVE-1999-0586 2026-04-16 N/A
A network service is running on a nonstandard port.
CVE-1999-0591 2026-04-16 N/A
An event log in Windows NT has inappropriate access permissions.
CVE-1999-0607 1 I-soft 1 Quikstore 2026-04-16 N/A
quikstore.cgi in QuikStore shopping cart stores quikstore.cfg under the web document root with insufficient access control, which allows remote attackers to obtain the cleartext administrator password and gain privileges.
CVE-1999-0630 2026-04-16 N/A
The NT Alerter and Messenger services are running.
CVE-1999-0640 2026-04-16 N/A
The Gopher service is running.
CVE-1999-0657 2026-04-16 N/A
WinGate is being used.