{"resultsPerPage":10,"startIndex":0,"totalResults":14501,"format":"NVD_CVE","version":"2.0","timestamp":"2026-07-21T02:11:03.574","vulnerabilities":[{"cve":{"id":"CVE-1999-0627","sourceIdentifier":"cve@mitre.org","published":"1992-03-01T05:00:00.000","lastModified":"2026-06-16T21:48:45.213","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The rexd service is running, which uses weak authentication that can allow an attacker to execute commands."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:N","baseScore":0.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":10.0,"impactScore":0.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.1:*:*:*:*:*:*:*","matchCriteriaId":"CE321D29-3312-4F22-B930-1B119DA4BD27"},{"vulnerable":true,"criteria":"cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*","matchCriteriaId":"DD5E0678-45C7-492A-963C-897494D6878F"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0627","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0627","source":"af854a3a-2127-422b-91ae-364da2661108"}],"evaluatorSolution":"The rexd service is an unsecured protocol for Internet facing systems and should only be used on a trusted network segment, otherwise disabled.  The software should be patched and configured properly.","evaluatorImpact":"This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System (CVSS) base score for this CVE entry has been set to 0 because this CVE entry has no impact as a software flaw according to CVSS. This does not mean that the configuration issue is not important and there may be security implications relative to computers having this configuration."}},{"cve":{"id":"CVE-1999-0168","sourceIdentifier":"cve@mitre.org","published":"1992-06-04T04:00:00.000","lastModified":"2026-06-16T21:47:44.800","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The portmapper may act as a proxy and redirect service requests from an attacker, making the request appear to come from the local host, possibly bypassing authentication that would otherwise have taken place.  For example, NFS file systems could be mounted through the portmapper despite export restrictions."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3:*:*:*:*:*:*:*","matchCriteriaId":"615FA6E4-4DE0-422A-9220-F747D95192C9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:4.1.3c:*:*:*:*:*:*:*","matchCriteriaId":"915D5897-B5FF-4F26-936E-9BAEF2604A86"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0168","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0168","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1098","sourceIdentifier":"cve@mitre.org","published":"1995-03-03T05:00:00.000","lastModified":"2026-06-16T21:49:43.067","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in BSD Telnet client with encryption and Kerberos 4 authentication allows remote attackers to decrypt the session via sniffing."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:bsd:bsd:*:*:*:*:*:*:*:*","matchCriteriaId":"B44D379F-F380-42EC-9C9A-A4C8314A4BDF"}]}]}],"references":[{"url":"http://www.cert.org/advisories/CA-1995-03.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/f-12.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/516.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/4881","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-1995-03.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"http://www.ciac.org/ciac/bulletins/f-12.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/516.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/4881","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1311","sourceIdentifier":"cve@mitre.org","published":"1997-01-07T05:00:00.000","lastModified":"2026-06-16T21:50:10.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"38BFA923-7D80-4F01-AF9F-6F13209948AC"},{"vulnerable":true,"criteria":"cpe:2.3:o:hp:hp-ux:10.20:*:*:*:*:*:*:*","matchCriteriaId":"EDE44C49-172C-4899-8CC8-29AA99A7CD2F"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"cve@mitre.org"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://ciac.llnl.gov/ciac/bulletins/h-21.shtml","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1158","sourceIdentifier":"cve@mitre.org","published":"1997-05-13T04:00:00.000","lastModified":"2026-06-16T21:49:50.657","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.3:*:*:*:*:*:*:*","matchCriteriaId":"C7A22D21-E0A9-4B56-86C7-805AD1A610D6"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5:*:*:*:*:*:*:*","matchCriteriaId":"5B72953B-E873-4E44-A3CF-12D770A0D416"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"39F847DB-65A9-47DA-BCFA-A179E5E2301A"}]}]}],"references":[{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-97.09.Solaris.passwd.buffer.overrun.vul","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/139&type=0&nav=sec.sba","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"ftp://ftp.auscert.org.au/pub/auscert/advisory/AA-97.09.Solaris.passwd.buffer.overrun.vul","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/139&type=0&nav=sec.sba","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-0160","sourceIdentifier":"cve@mitre.org","published":"1997-10-01T04:00:00.000","lastModified":"2026-06-16T21:47:43.793","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:4.1:*:*:*:*:*:*:*","matchCriteriaId":"96C6FB91-22FC-4DA9-B19A-8065D8B89F03"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:9.1:*:*:*:*:*:*:*","matchCriteriaId":"2E9A00D5-A594-4C64-B982-10CB4C554F51"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:10.3:*:*:*:*:*:*:*","matchCriteriaId":"3824A6CC-5C3A-4146-9CDD-B7B213527552"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.0:*:*:*:*:*:*:*","matchCriteriaId":"D626B494-6210-4F74-8D17-BA480B6665C3"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.1:*:*:*:*:*:*:*","matchCriteriaId":"82B6315D-7BEF-419F-9B93-3CF669E986D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2:*:*:*:*:*:*:*","matchCriteriaId":"E8026B11-6144-467F-8094-F4F73CD37526"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:11.2p:*:*:*:*:*:*:*","matchCriteriaId":"0DC1411B-4E7E-4F57-B025-9FE27B09C7AC"}]}]}],"references":[{"url":"http://www.osvdb.org/1099","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/1099","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0293","sourceIdentifier":"cve@mitre.org","published":"1998-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:05.380","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"AAA authentication on Cisco systems allows attackers to execute commands without authorization."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:ios:-:*:*:*:*:*:*:*","matchCriteriaId":"B6230A85-30D2-4934-A8A0-11499B7B09F8"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0293","source":"cve@mitre.org","tags":["VDB Entry"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0293","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["VDB Entry"]}]}},{"cve":{"id":"CVE-1999-0795","sourceIdentifier":"cve@mitre.org","published":"1998-03-01T05:00:00.000","lastModified":"2026-06-16T21:49:04.423","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:*:*:*:*:*:*:*:*","matchCriteriaId":"469B74F2-4B89-42B8-8638-731E92D463B9"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*","matchCriteriaId":"11AEFEC9-5DB4-44CB-977D-6561DC1680C1"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0795","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0795","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1558","sourceIdentifier":"cve@mitre.org","published":"1998-07-16T04:00:00.000","lastModified":"2026-06-16T21:50:42.860","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in loginout in Digital OpenVMS 7.1 and earlier allows unauthorized access when external authentication is enabled."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:digital:digital_openvms:7.1:*:*:*:*:*:*:*","matchCriteriaId":"4D773082-EEC5-489D-93BB-EB3236B72FE0"},{"vulnerable":true,"criteria":"cpe:2.3:a:digital:digital_openvms_axp:7.1:*:*:*:*:*:*:*","matchCriteriaId":"9221659C-04A7-4051-A8B4-F54EE4BEE497"}]}]}],"references":[{"url":"http://ciac.llnl.gov/ciac/bulletins/i-071a.shtml","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7151.php","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/161","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"http://ciac.llnl.gov/ciac/bulletins/i-071a.shtml","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"http://www.iss.net/security_center/static/7151.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/161","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1071","sourceIdentifier":"cve@mitre.org","published":"1998-11-30T05:00:00.000","lastModified":"2026-06-16T21:49:39.660","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which allows local users to gain access to Excite accounts by modifying the file."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:excite:ews:1.1:*:*:*:*:*:*:*","matchCriteriaId":"5F69DC10-474D-44C8-BE36-7F77EFBB0955"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=91248445931140&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1417","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=91248445931140&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1417","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}