Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-1999-1365 Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLOR… Windows Nt Mitigation only Fix from $1,9501999-06-28 MEDIUM 5.0 CVE-1999-1164EPSS 13% Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which … Outlook Mitigation only Fix from $1,6001999-06-25 HIGH 7.1 CVE-1999-0723EPSS 7% The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input. Windows 2000 No fix yet Fix from $1,9501999-06-23 HIGH 10.0 CVE-1999-0874EPSS 75% Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions. Internet Information Server Mitigation only Fix from $1,9501999-06-16 MEDIUM 5.0 CVE-1999-0755EPSS 15% Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option. Windows 2000 Mitigation only Fix from $1,6001999-05-27 HIGH 10.0 CVE-1999-0489EPSS 12% MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scr… Windows Nt Mitigation only Fix from $1,9501999-05-17 MEDIUM 5.0 CVE-1999-0229EPSS 6% Denial of service in Windows NT IIS server using ..\.. Internet Information Server Mitigation only Fix from $1,6001999-05-12 MEDIUM 5.0 CVE-1999-0736EPSS 45% The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. Internet Information Server Mitigation only Fix from $1,6001999-05-07 MEDIUM 5.0 CVE-1999-0737EPSS 28% The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. Internet Information Server Mitigation only Fix from $1,6001999-05-07 MEDIUM 5.0 CVE-1999-0738EPSS 29% The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. Internet Information Server Mitigation only Fix from $1,6001999-05-07 MEDIUM 5.0 CVE-1999-0739EPSS 29% The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. Internet Information Server Mitigation only Fix from $1,6001999-05-07 MEDIUM 5.0 CVE-1999-0444EPSS 16% Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or fi… Windows 95 Mitigation only Fix from $1,6001999-04-12 MEDIUM 5.0 CVE-2000-0153EPSS 14% FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack. Frontpage Mitigation only Fix from $1,6001999-03-26 HIGH 7.5 CVE-1999-1397EPSS 12% Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions … Index Server Mitigation only Fix from $1,9501999-03-23 HIGH 7.2 CVE-1999-0382 The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated … Windows Nt Mitigation only Fix from $1,9501999-03-12 MEDIUM 5.0 CVE-1999-1254EPSS 13% Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows… Windows 95 Mitigation only Fix from $1,6001999-03-08 MEDIUM 5.0 CVE-1999-0386EPSS 19% Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using… Frontpage Mitigation only Fix from $1,6001999-03-01 HIGH 7.5 CVE-1999-0379EPSS 6% Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripti… Backoffice Resource Kit Mitigation only Fix from $1,9501999-02-22 HIGH 7.5 CVE-1999-0412EPSS 10% In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension. Internet Information Server Mitigation only Fix from $1,9501999-02-19 MEDIUM 5.0 CVE-1999-1375EPSS 31% FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the fil… Internet Information Server No fix yet Fix from $1,6001999-02-11 HIGH 10.0 CVE-1999-0407EPSS 5% By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to ident… Internet Information Server Mitigation only Fix from $1,9501999-02-09 HIGH 7.5 CVE-1999-0366 In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash val… Windows Nt Mitigation only Fix from $1,9501999-02-08 MEDIUM 5.0 CVE-1999-1201EPSS 14% Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denia… Windows 95 Mitigation only Fix from $1,6001999-02-06 HIGH 7.2 CVE-1999-0360EPSS 6% MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remote… Site Server Mitigation only Fix from $1,9501999-01-30 HIGH 7.5 CVE-1999-0349EPSS 18% A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary co… Internet Information Server Mitigation only Fix from $1,9501999-01-27 MEDIUM 5.0 CVE-1999-0348EPSS 11% IIS ASP caching problem releases sensitive information when two virtual servers share the same physical directory. Internet Information Server Mitigation only Fix from $1,6001999-01-27 HIGH 7.8 CVE-1999-0449EPSS 50% The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, … Internet Information Server Mitigation only Fix from $1,9501999-01-26 HIGH 7.5 CVE-1999-0450EPSS 19% In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe). Internet Information Server Mitigation only Fix from $1,9501999-01-26 MEDIUM 5.0 CVE-1999-0357EPSS 16% Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid … Windows 98 Mitigation only Fix from $1,6001999-01-25 MEDIUM 5.0 CVE-1999-1544EPSS 14% Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (… Internet Information Server Mitigation only Fix from $1,6001999-01-24