CVE-1999-0822
Published Nov 30, 1999Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
Severity archive
43,568 critical severity CVEs — 43,568 Critical, 125,370 High, 163,702 Medium, 17,994 Low, 2,179 Unrated across the current result set.
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name.
Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL.
Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by directly calling undocumented URLs such as ncl_items.html and…
Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands via a long "From" header in an e-mail message.
Denial of service in BIND named via malformed SIG records.
Denial of service in BIND by improperly closing TCP sessions via so_linger.
Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname.
A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a long HELO command to the server.
Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands via a long username and password.
Buffer overflow in WFTPD FTP server allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.
Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine.
IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections.
Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands.
The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox environment.
Buffer overflow in OpenLink 3.2 allows remote attackers to gain privileges via a long GET request to the web configurator.
Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to compromise the system through the HSMP protocol.
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.
Buffer overflow in AIX ftpd in the libc library.
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers.
Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external programs to handle certain protocols, e.g. telnet.
Buffer overflow in FuseMAIL POP service via long USER and PASS commands.