CVE-1999-1125
https://notcve.org/view.php?id=CVE-1999-1125
Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file. • http://marc.info/?l=bugtraq&m=87602880019796&w=2 •
CVE-1999-0071
https://notcve.org/view.php?id=CVE-1999-0071
Apache httpd cookie buffer overflow for versions 1.1.1 and earlier. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0071 •
CVE-1999-1068
https://notcve.org/view.php?id=CVE-1999-1068
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. • http://marc.info/?l=bugtraq&m=87602661419366&w=2 •
CVE-1999-0045 – Apache 1.1 / NCSA HTTPd 1.5.2 / Netscape Server 1.12/1.1/2.0 - a nph-test-cgi
https://notcve.org/view.php?id=CVE-1999-0045
List of arbitrary files on Web host via nph-test-cgi script. • https://www.exploit-db.com/exploits/19536 https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0045 •
CVE-1999-0070 – Apache 0.8.x/1.0.x / NCSA HTTPd 1.x - 'test-cgi' Directory Listing
https://notcve.org/view.php?id=CVE-1999-0070
test-cgi program allows an attacker to list files on the server. • https://www.exploit-db.com/exploits/20435 https://lists.apache.org/thread.html/rc5d27fc1e76dc5650e1a3f1db1de403120f4c2d041cb7352850455c2%40%3Cusers.httpd.apache.org%3E •