Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Windows Nt HIGH 7.2
CVE-1999-1365

Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLOR…

Mitigation only
Fix from $1,950 1999-06-28
Outlook MEDIUM 5.0
CVE-1999-1164EPSS 13%

Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which …

Mitigation only
Fix from $1,600 1999-06-25
Windows 2000 HIGH 7.1
CVE-1999-0723EPSS 7%

The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input.

No fix yet
Fix from $1,950 1999-06-23
Internet Information Server HIGH 10.0
CVE-1999-0874EPSS 75%

Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions.

Mitigation only
Fix from $1,950 1999-06-16
Windows 2000 MEDIUM 5.0
CVE-1999-0755EPSS 15%

Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option.

Mitigation only
Fix from $1,600 1999-05-27
Windows Nt HIGH 10.0
CVE-1999-0489EPSS 12%

MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scr…

Mitigation only
Fix from $1,950 1999-05-17
Internet Information Server MEDIUM 5.0
CVE-1999-0229EPSS 6%

Denial of service in Windows NT IIS server using ..\..

Mitigation only
Fix from $1,600 1999-05-12
Internet Information Server MEDIUM 5.0
CVE-1999-0736EPSS 45%

The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.

Mitigation only
Fix from $1,600 1999-05-07
Internet Information Server MEDIUM 5.0
CVE-1999-0737EPSS 28%

The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.

Mitigation only
Fix from $1,600 1999-05-07
Internet Information Server MEDIUM 5.0
CVE-1999-0738EPSS 29%

The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.

Mitigation only
Fix from $1,600 1999-05-07
Internet Information Server MEDIUM 5.0
CVE-1999-0739EPSS 29%

The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.

Mitigation only
Fix from $1,600 1999-05-07
Windows 95 MEDIUM 5.0
CVE-1999-0444EPSS 16%

Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or fi…

Mitigation only
Fix from $1,600 1999-04-12
Frontpage MEDIUM 5.0
CVE-2000-0153EPSS 14%

FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.

Mitigation only
Fix from $1,600 1999-03-26
Index Server HIGH 7.5
CVE-1999-1397EPSS 12%

Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions …

Mitigation only
Fix from $1,950 1999-03-23
Windows Nt HIGH 7.2
CVE-1999-0382

The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated …

Mitigation only
Fix from $1,950 1999-03-12
Windows 95 MEDIUM 5.0
CVE-1999-1254EPSS 13%

Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows…

Mitigation only
Fix from $1,600 1999-03-08
Frontpage MEDIUM 5.0
CVE-1999-0386EPSS 19%

Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using…

Mitigation only
Fix from $1,600 1999-03-01
Backoffice Resource Kit HIGH 7.5
CVE-1999-0379EPSS 6%

Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripti…

Mitigation only
Fix from $1,950 1999-02-22
Internet Information Server HIGH 7.5
CVE-1999-0412EPSS 10%

In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.

Mitigation only
Fix from $1,950 1999-02-19
Internet Information Server MEDIUM 5.0
CVE-1999-1375EPSS 31%

FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the fil…

No fix yet
Fix from $1,600 1999-02-11
Internet Information Server HIGH 10.0
CVE-1999-0407EPSS 5%

By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to ident…

Mitigation only
Fix from $1,950 1999-02-09
Windows Nt HIGH 7.5
CVE-1999-0366

In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash val…

Mitigation only
Fix from $1,950 1999-02-08
Windows 95 MEDIUM 5.0
CVE-1999-1201EPSS 14%

Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denia…

Mitigation only
Fix from $1,600 1999-02-06
Site Server HIGH 7.2
CVE-1999-0360EPSS 6%

MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remote…

Mitigation only
Fix from $1,950 1999-01-30
Internet Information Server HIGH 7.5
CVE-1999-0349EPSS 18%

A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary co…

Mitigation only
Fix from $1,950 1999-01-27
Internet Information Server MEDIUM 5.0
CVE-1999-0348EPSS 11%

IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory.

Mitigation only
Fix from $1,600 1999-01-27
Internet Information Server HIGH 7.8
CVE-1999-0449EPSS 50%

The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, …

Mitigation only
Fix from $1,950 1999-01-26
Internet Information Server HIGH 7.5
CVE-1999-0450EPSS 19%

In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).

Mitigation only
Fix from $1,950 1999-01-26
Windows 98 MEDIUM 5.0
CVE-1999-0357EPSS 16%

Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid …

Mitigation only
Fix from $1,600 1999-01-25
Internet Information Server MEDIUM 5.0
CVE-1999-1544EPSS 14%

Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (…

Mitigation only
Fix from $1,600 1999-01-24