CVE-1999-1000
Published Dec 16, 1999The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics.
Loading current evidence
Historical archive search
Search decades of CVEs by regex, severity, date, CWE, vendor/product tags, KEV, PoC, and other evidence.
Results
163,222 results · Sorted by Highest Buzz score first
The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics.
classifieds.cgi allows remote attackers to read arbitrary files via shell metacharacters.
War FTP Daemon 1.70 allows remote attackers to cause a denial of service by flooding it with connections.
The Apache web server for Win32 may provide access to restricted files when a . (dot) is appended to a requested URL.
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to…
The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option.
Buffer overflow in GoodTech Telnet Server NT allows remote users to cause a denial of service via a long login name.
Buffer overflow in CommuniGatePro via a long string to the HTTP configuration port.
ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it.
FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu commands.
Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument.
Buffer overflow in FreeBSD angband allows local users to gain privileges.
Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command.
Denial of service in MDaemon 2.7 via a large number of connection attempts.
login in Slackware 7.0 allows remote attackers to identify valid users on the system by reporting an encryption error when an account is locked or does not exist.
ZBServer Pro allows remote attackers to read source code for executable files by inserting a . (dot) into the URL.
Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin.
A Windows NT user can use SUBST to map a drive letter to a folder, which is not unmapped after the user logs off, potentially allowing that user to modify the location of folders…
Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack.
Buffer overflow in free internet chess server (FICS) program, xboard.
Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceed…
Denial of service in Linux syslogd via a large number of connections.
ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e…
Every filter state lives in the URL so you can bookmark, share, and crawl exact historical slices instead of a client-only search session.
Buzz order uses the latest all-time evidence snapshot, refreshed every two hours. Evidence-bearing CVEs rank first; records without a snapshot continue newest-first.