Skip to main content

Severity archive

Critical severity CVEs

Critical

43,568 critical severity CVEs — 43,568 Critical, 125,370 High, 163,702 Medium, 17,994 Low, 2,179 Unrated across the current result set.

CVE-1999-0822

Published Nov 30, 1999

Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0987

Published Nov 18, 1999

Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0352

Published Nov 18, 1999

Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1190

Published Nov 15, 1999

Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands via a long "From" header in an e-mail message.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-0679

Published Nov 8, 1999

A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a long HELO command to the server.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0896

Published Nov 4, 1999

Buffer overflow in RealNetworks RealServer administration utility allows remote attackers to execute arbitrary commands via a long username and password.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0950

Published Oct 28, 1999

Buffer overflow in WFTPD FTP server allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0883

Published Oct 25, 1999

Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0944

Published Oct 24, 1999

IBM WebSphere ikeyman tool uses weak encryption to store a password for a key database that is used for SSL connections.

CVSS 10.0 · Critical

CVE-1999-0951

Published Oct 22, 1999

Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0943

Published Oct 15, 1999

Buffer overflow in OpenLink 3.2 allows remote attackers to gain privileges via a long GET request to the web configurator.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0791

Published Oct 6, 1999

Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to compromise the system through the HSMP protocol.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1542

Published Oct 4, 1999

RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0879

Published Oct 1, 1999

Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0789

Published Sep 28, 1999

Buffer overflow in AIX ftpd in the libc library.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0886

Published Sep 17, 1999

The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.

CVSS 9.0 · Critical
Buzz score
8.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-1999-0953

Published Sep 16, 1999

WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0817

Published Sep 15, 1999

Lynx WWW client allows a remote attacker to specify command-line parameters which Lynx uses when calling external programs to handle certain protocols, e.g. telnet.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0759

Published Sep 13, 1999

Buffer overflow in FuseMAIL POP service via long USER and PASS commands.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 43,426-43,450 of 43,568 CVEsPage 1738 of 1743