Monthly Archive: September 1999

CVE-1999-0288

The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process termination) via invalid UDP frames to port 137 (NETBIOS Name Service), as demonstrated via...

CVE-1999-0281

Denial of service in IIS using long URLs. Date published : 1999-09-29

CVE-1999-0279

Excite for Web Servers (EWS) allows remote command execution via shell metacharacters. Date published : 1999-09-29

CVE-1999-0277

The WorkMan program can be used to overwrite any file to get root access. Date published : 1999-09-29

CVE-1999-0276

mSQL v2.0.1 and below allows remote execution through a buffer overflow. Date published : 1999-09-29

CVE-1999-0274

Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn’t made. Date published : 1999-09-29

CVE-1999-0273

Denial of service through Solaris 2.5.1 telnet by sending ^D characters. Date published : 1999-09-29

CVE-1999-0272

Denial of service in Slmail v2.5 through the POP3 port. Date published : 1999-09-29

CVE-1999-0269

Netscape Enterprise servers may list files through the PageServices query. Date published : 1999-09-29

CVE-1999-0267

Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution. Date published : 1999-09-29

CVE-1999-0264

htmlscript CGI program allows remote read access to files. Date published : 1999-09-29