Page 15 of 153 results (0.003 seconds)

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 0

20 Feb 1998 — FreeBSD mmap function allows users to modify append-only or immutable files. • ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1998-003.txt.asc •

CVSS: 7.2EPSS: 0%CPEs: 4EXPL: 0

01 Feb 1998 — mmap function in BSD allows local attackers in the kmem group to modify memory through devices. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0304 •

CVSS: 7.5EPSS: 25%CPEs: 33EXPL: 1

05 Jan 1998 — ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service. • https://www.exploit-db.com/exploits/19117 •

CVSS: 7.5EPSS: 25%CPEs: 26EXPL: 1

16 Dec 1997 — Teardrop IP denial of service. • https://www.exploit-db.com/exploits/19103 •

CVSS: 9.1EPSS: 1%CPEs: 32EXPL: 0

10 Dec 1997 — FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0017 •

CVSS: 7.5EPSS: 71%CPEs: 23EXPL: 7

01 Dec 1997 — Land IP denial of service. • https://www.exploit-db.com/exploits/20810 •

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

15 Sep 1997 — The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID. • http://www.openbsd.com/advisories/signals.txt • CWE-255: Credentials Management Errors •

CVSS: 5.3EPSS: 0%CPEs: 5EXPL: 0

24 Aug 1997 — rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not. • http://www.securityfocus.com/archive/1/7526 •

CVSS: 7.5EPSS: 5%CPEs: 4EXPL: 0

01 Jul 1997 — Listening TCP ports are sequentially allocated, allowing spoofing attacks. • https://www.cve.org/CVERecord?id=CVE-1999-0074 •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 0

01 Jul 1997 — The rwho/rwhod service is running, which exposes machine status and user information. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0628 •