{"resultsPerPage":10,"startIndex":0,"totalResults":2693,"format":"NVD_CVE","version":"2.0","timestamp":"2026-07-21T02:11:00.360","vulnerabilities":[{"cve":{"id":"CVE-1999-1142","sourceIdentifier":"cve@mitre.org","published":"1992-05-27T04:00:00.000","lastModified":"2026-06-16T21:49:48.683","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"SunOS 4.1.2 and earlier allows local users to gain privileges via \"LD_*\" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1.2","matchCriteriaId":"B756EC9D-B72C-4A5F-9C17-A2F73583B7D2"}]}]}],"references":[{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/116","source":"cve@mitre.org"},{"url":"http://www.cert.org/advisories/CA-1992-11.html","source":"cve@mitre.org","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3152","source":"cve@mitre.org"},{"url":"http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/116","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.cert.org/advisories/CA-1992-11.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/3152","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1413","sourceIdentifier":"cve@mitre.org","published":"1996-08-03T04:00:00.000","lastModified":"2026-06-16T21:50:23.280","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. through dmesg."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-08-01T19:40:04.144434Z","id":"CVE-1999-1413","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:sun:solaris:2.4:*:x86:*:*:*:*:*","matchCriteriaId":"1F881110-7B54-49DA-B23A-710273430C44"},{"vulnerable":true,"criteria":"cpe:2.3:o:sun:sunos:5.4:*:*:*:*:*:*:*","matchCriteriaId":"7AAC8954-74A8-4FE3-ABE7-57DA041D9D8F"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=87602167419549&w=2","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/296","source":"cve@mitre.org","tags":["Exploit","Patch","Vendor Advisory"]},{"url":"http://marc.info/?l=bugtraq&m=87602167419549&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/296","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"]}]}},{"cve":{"id":"CVE-1999-1099","sourceIdentifier":"cve@mitre.org","published":"1996-11-22T05:00:00.000","lastModified":"2026-06-16T21:49:43.190","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:kth:kth_kerberos:4:*:*:*:*:*:*:*","matchCriteriaId":"A04BDD12-4421-49FA-9322-25F00B0402F3"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=87602167420184&w=2","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=87602167420184&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/65","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0271","sourceIdentifier":"cve@mitre.org","published":"1998-01-15T05:00:00.000","lastModified":"2026-06-16T21:48:02.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Progressive Networks Real Video server (pnserver) can be crashed remotely."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0271","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0271","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1045","sourceIdentifier":"cve@mitre.org","published":"1998-01-15T05:00:00.000","lastModified":"2026-06-16T21:49:35.440","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"pnserver in RealServer 5.0 and earlier allows remote attackers to cause a denial of service by sending a short, malformed request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:C","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:5.0:*:*:*:*:*:*:*","matchCriteriaId":"BE671A54-2E76-467E-8945-10982B79F4CE"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=88490880523890&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88492978527261&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=90338245305236&w=2","source":"cve@mitre.org"},{"url":"http://service.real.com/help/faq/serv501.html","source":"cve@mitre.org","tags":["Patch"]},{"url":"http://www.iss.net/security_center/static/7297.php","source":"cve@mitre.org"},{"url":"http://www.osvdb.org/6979","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=88490880523890&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=88492978527261&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://marc.info/?l=bugtraq&m=90338245305236&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://service.real.com/help/faq/serv501.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"]},{"url":"http://www.iss.net/security_center/static/7297.php","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.osvdb.org/6979","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1282","sourceIdentifier":"cve@mitre.org","published":"1998-12-10T05:00:00.000","lastModified":"2026-06-16T21:50:06.293","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realsystem_g2_server:*:*:*:*:*:*:*:*","matchCriteriaId":"E855DA0F-BC37-4FBF-80C9-0F84FC8ED26D"}]}]}],"references":[{"url":"http://www.securityfocus.com/archive/1/11543","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1542","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/archive/1/11543","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/1542","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0448","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:25.087","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"}]}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0448","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0448","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0527","sourceIdentifier":"cve@mitre.org","published":"1999-01-01T05:00:00.000","lastModified":"2026-06-16T21:48:35.170","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The permissions for system-critical data in an anonymous FTP account are inappropriate.  For example, the root directory is writeable by world, a real password file is obtainable, or executable commands such as \"ls\" can be overwritten."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6253","source":"cve@mitre.org"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/6253","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-0450","sourceIdentifier":"cve@mitre.org","published":"1999-01-26T05:00:00.000","lastModified":"2026-06-16T21:48:25.340","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe)."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*","matchCriteriaId":"547AB6E2-4E9F-4783-8BB4-0AE297A38C9C"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*","matchCriteriaId":"5D47E9C4-5439-4A82-BBD8-D6B482B47E51"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:2.0:*:*:*:*:*:*:*","matchCriteriaId":"E701AB0D-E335-47DF-A0CA-607D5C6E9255"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*","matchCriteriaId":"413C07EA-139F-4B7D-A58B-835BD2591FA0"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/194","source":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/194","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-1999-1369","sourceIdentifier":"cve@mitre.org","published":"1999-04-14T04:00:00.000","lastModified":"2026-06-16T21:50:17.603","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:realnetworks:realserver:6.0.3.353:*:*:*:*:*:*:*","matchCriteriaId":"A0E48281-E72C-437C-8329-DC4E9F9AD04D"}]}]}],"references":[{"url":"http://marc.info/?l=bugtraq&m=92411181619110&w=2","source":"cve@mitre.org"},{"url":"http://marc.info/?l=bugtraq&m=92411181619110&w=2","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}