Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-1999-1365
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLOR…
Windows Nt
Mitigation only
MEDIUM 5.0
CVE-1999-1164EPSS 13%
Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which …
Outlook
Mitigation only
HIGH 7.1
CVE-1999-0723EPSS 7%
The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input.
Windows 2000
No fix yet
HIGH 10.0
CVE-1999-0874EPSS 75%
Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0755EPSS 15%
Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option.
Windows 2000
Mitigation only
HIGH 10.0
CVE-1999-0489EPSS 12%
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scr…
Windows Nt
Mitigation only
MEDIUM 5.0
CVE-1999-0229EPSS 6%
Denial of service in Windows NT IIS server using ..\..
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0736EPSS 45%
The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0737EPSS 28%
The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0738EPSS 29%
The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0739EPSS 29%
The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0444EPSS 16%
Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or fi…
Windows 95
Mitigation only
MEDIUM 5.0
CVE-2000-0153EPSS 14%
FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.
Frontpage
Mitigation only
HIGH 7.5
CVE-1999-1397EPSS 12%
Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions …
Index Server
Mitigation only
HIGH 7.2
CVE-1999-0382
The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated …
Windows Nt
Mitigation only
MEDIUM 5.0
CVE-1999-1254EPSS 13%
Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows…
Windows 95
Mitigation only
MEDIUM 5.0
CVE-1999-0386EPSS 19%
Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using…
Frontpage
Mitigation only
HIGH 7.5
CVE-1999-0379EPSS 6%
Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripti…
Backoffice Resource Kit
Mitigation only
HIGH 7.5
CVE-1999-0412EPSS 10%
In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-1375EPSS 31%
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the fil…
Internet Information Server
No fix yet
HIGH 10.0
CVE-1999-0407EPSS 5%
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to ident…
Internet Information Server
Mitigation only
HIGH 7.5
CVE-1999-0366
In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash val…
Windows Nt
Mitigation only
MEDIUM 5.0
CVE-1999-1201EPSS 14%
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denia…
Windows 95
Mitigation only
HIGH 7.2
CVE-1999-0360EPSS 6%
MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remote…
Site Server
Mitigation only
HIGH 7.5
CVE-1999-0349EPSS 18%
A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary co…
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0348EPSS 11%
IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory.
Internet Information Server
Mitigation only
HIGH 7.8
CVE-1999-0449EPSS 50%
The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, …
Internet Information Server
Mitigation only
HIGH 7.5
CVE-1999-0450EPSS 19%
In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).
Internet Information Server
Mitigation only
MEDIUM 5.0
CVE-1999-0357EPSS 16%
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid …
Windows 98
Mitigation only
MEDIUM 5.0
CVE-1999-1544EPSS 14%
Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (…
Internet Information Server
Mitigation only