Skip to main content

Severity archive

High severity CVEs

High

125,540 high severity CVEs — 43,633 Critical, 125,540 High, 163,851 Medium, 18,006 Low, 2,159 Unrated across the current result set.

CVE-1999-0679

Published Aug 13, 1999

Buffer overflow in hybrid-6 IRC server commonly used on EFnet allows remote attackers to execute commands via m_invite invite option.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0813

Published Aug 10, 1999

Cfingerd with ALLOW_EXECUTION enabled does not properly drop privileges when it executes a program on behalf of the user, allowing local users to gain root privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1227

Published Jul 30, 1999

Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1536

Published Jul 30, 1999

.sbstart startup script in AcuShop Salesbuilder is world writable, which allows local users to gain privileges by appending commands to the file.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1078

Published Jul 29, 1999

WS_FTP Pro 6.0 uses weak encryption for passwords in its initialization files, which allows remote attackers to easily decrypt the passwords and gain privileges.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1017

Published Jul 28, 1999

Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to ex…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0323

Published Jul 28, 1999

The Microsoft Jet database engine allows an attacker to modify text files via a database query, aka the "Text I-ISAM" vulnerability.

CVSS 7.6 · High
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-1999-1018

Published Jul 27, 1999

IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0710

Published Jul 25, 1999

The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediar…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1165

Published Jul 21, 1999

GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fin…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1560

Published Jul 20, 1999

Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the Tiger user, usually root.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1460

Published Jul 13, 1999

BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt progr…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1166

Published Jul 11, 1999

Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0728

Published Jul 6, 1999

A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them.

CVSS 7.8 · High
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-1999-0690

Published Jul 1, 1999

HP CDE program includes the current directory in root's PATH variable.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0707

Published Jul 1, 1999

The default FTP configuration in HP Visualize Conference allows conference users to send a file to other participants without authorization.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0889

Published Jul 1, 1999

Cisco 675 routers running CBOS allow remote attackers to establish telnet sessions if an exec or superuser password has not been set.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-0938

Published Jun 28, 1999

MBone SDR Package allows remote attackers to execute commands via shell metacharacters in Session Initiation Protocol (SIP) messages.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-1999-1365

Published Jun 28, 1999

Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMG…

CVSS 7.2 · High
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort
Showing 125,426-125,450 of 125,540 CVEsPage 5018 of 5022