Skip to main content

Severity archive

Critical severity CVEs

Critical

43,592 critical severity CVEs — 43,592 Critical, 125,443 High, 163,751 Medium, 17,997 Low, 2,140 Unrated across the current result set.

CVE-1999-0702

Published Sep 10, 1999

Internet Explorer 5.0 and 5.01 allows remote attackers to modify or execute files via the Import/Export Favorites feature, aka the "ImportExportFavorites" vulnerability.

CVSS 10.0 · Critical
Buzz score
10.0
Public PoC observedOTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-1999-0926

Published Sep 3, 1999

Apache allows remote attackers to conduct a denial of service via a large number of MIME headers.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0911

Published Aug 27, 1999

Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1064

Published Aug 22, 1999

Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a l…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0374

Published Aug 22, 1999

The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain s…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0745

Published Aug 18, 1999

Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0814

Published Aug 11, 1999

Red Hat pump DHCP client allows remote attackers to gain root access in some configurations.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0722

Published Aug 8, 1999

The default configuration of Cobalt RaQ2 servers allows remote users to install arbitrary software packages.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0810

Published Jul 21, 1999

Denial of service in Samba NETBIOS name service daemon (nmbd).

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1535

Published Jul 20, 1999

Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0692

Published Jul 19, 1999

The default configuration of the Array Services daemon (arrayd) disables authentication, allowing remote users to gain root privileges.

CVSS 10.0 · Critical
Buzz score
6.0
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-1999-1086

Published Jul 15, 1999

Novell 5 and earlier, when running over IPX with a packet signature level less than 3, allows remote attackers to gain administrator privileges by spoofing the MAC address in IPC…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0353

Published Jun 28, 1999

Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0730

Published Jun 12, 1999

The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0775

Published Jun 10, 1999

Cisco Gigabit Switch routers running IOS allow remote attackers to forward unauthorized packets due to improper handling of the "established" keyword in an access list.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1237

Published Jun 6, 1999

Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary comm…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-1063

Published Jun 1, 1999

CDomain whois_raw.cgi whois CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in the fqdn parameter.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0765

Published May 19, 1999

SGI IRIX midikeys program allows local users to modify arbitrary files via a text editor.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 43,476-43,500 of 43,592 CVEsPage 1740 of 1744