
CVE-2000-0129 – Cat Soft Serv-U FTP Server 2.5/a/b (Windows 95/98/2000/NT 4.0) - Shortcut
https://notcve.org/view.php?id=CVE-2000-0129
04 Feb 2000 — Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file. • https://www.exploit-db.com/exploits/19743 •

CVE-1999-0975 – Microsoft Windows 95/98/NT 4.0 - Help File Backdoor
https://notcve.org/view.php?id=CVE-1999-0975
10 Dec 1999 — The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed. • https://www.exploit-db.com/exploits/19673 •

CVE-1999-0387
https://notcve.org/view.php?id=CVE-1999-0387
29 Nov 1999 — A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ168115 • CWE-255: Credentials Management Errors •

CVE-2000-0073 – Microsoft Windows 95/98/Enterprise Server 4/NT Server 4/Terminal Server 4/Workstation 4 - Riched Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0073
17 Nov 1999 — Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word. • https://www.exploit-db.com/exploits/19633 •

CVE-2000-0330 – Microsoft Windows 95/98 - UNC Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0330
12 Nov 1999 — The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability. • https://www.exploit-db.com/exploits/19607 •

CVE-1999-0749 – Microsoft Windows 95/98 Internet Explorer 5/Telnet - Local Heap Overflow
https://notcve.org/view.php?id=CVE-1999-0749
16 Aug 1999 — Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument. • https://www.exploit-db.com/exploits/19462 •

CVE-1999-0918 – Microsoft Windows 95/98 / NT Enterprise Server 4.0 SP5 / NT Terminal Server 4.0 SP4 / NT Workstation 4.0 SP5 - Denial of Service
https://notcve.org/view.php?id=CVE-1999-0918
03 Jul 1999 — Denial of service in various Windows systems via malformed, fragmented IGMP packets. • https://www.exploit-db.com/exploits/19414 • CWE-20: Improper Input Validation •

CVE-1999-0717
https://notcve.org/view.php?id=CVE-1999-0717
07 May 1999 — A remote attacker can disable the virus warning mechanism in Microsoft Excel 97. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231304 •

CVE-1999-0444
https://notcve.org/view.php?id=CVE-1999-0444
12 Apr 1999 — Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files. • https://marc.info/?l=bugtraq&m=92394891221029&w=2 •

CVE-1999-1254
https://notcve.org/view.php?id=CVE-1999-1254
08 Mar 1999 — Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables. • http://marc.info/?l=ntbugtraq&m=92099515709467&w=2 •