IT
58.306 CVE tracked
789 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2000-0199 HIGH 7.2 microsoft sql_server When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the "Always prompt for login name and password" option is not set, then the Enterprise Manager uses weak encryption to store the login ID and password. 1.4% —
CVE-2000-0155 HIGH 7.2 microsoft windows_95 Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive. 3.9% —
CVE-2000-0100 HIGH 7.2 microsoft systems_management_server The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program. 2.8% —
CVE-2000-0088 HIGH 7.2 microsoft office Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malformed Conversion Data" vulnerability. 1.9% —
CVE-2000-0070 HIGH 7.2 microsoft windows_nt NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request." 2.3% —
CVE-1999-1556 HIGH 7.2 microsoft sql_server Microsoft SQL Server 6.5 uses weak encryption for the password for the SQLExecutiveCmdExec account and stores it in an accessible portion of the registry, which could allow local users to gain privileges by reading and decrypting the CmdExecAccount value. 1.7% —
CVE-1999-1442 HIGH 7.2 linux linux_kernel Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a particular sequence of instructions, possibly related to accessing addresses outside of segments. 0.9% —
CVE-1999-1370 HIGH 7.2 microsoft internet_explorer The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prev 1.3% —
CVE-1999-1365 HIGH 7.2 microsoft windows_nt Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privil 2.8% —
CVE-1999-1276 HIGH 7.2 debian debian_linux fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device. 0.3% —
CVE-1999-1166 HIGH 7.2 linux linux_kernel Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory. 1.0% —
CVE-1999-0899 HIGH 7.2 microsoft windows_nt The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an alternate print provider. 3.2% —
CVE-1999-0898 HIGH 7.2 microsoft windows_nt Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler request. 6.7% —
CVE-1999-0839 HIGH 7.2 microsoft ie Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled. 1.6% —
CVE-1999-0781 HIGH 7.2 freebsd freebsd KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables. 0.4% —
CVE-1999-0733 HIGH 7.2 vmware workstation Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable. 1.1% —
CVE-1999-0701 HIGH 7.2 microsoft windows_nt After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password. 1.6% —
CVE-1999-0549 HIGH 7.2 microsoft windows_nt Windows NT automatically logs in an administrator upon rebooting. 1.8% —
CVE-1999-0506 HIGH 7.2 microsoft windows_2000 A Windows NT domain user or administrator account has a default, null, blank, or missing password. 17.2% —
CVE-1999-0505 HIGH 7.2 microsoft windows_2000 A Windows NT domain user or administrator account has a guessable password. 1.8% —
CVE-1999-0503 HIGH 7.2 microsoft windows_2000 A Windows NT local user or administrator account has a guessable password. 1.8% —
CVE-1999-0496 HIGH 7.2 microsoft windows_nt A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin. 1.4% —
CVE-1999-0382 HIGH 7.2 microsoft windows_nt The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated privileges. 3.1% —
CVE-1999-0381 HIGH 7.2 debian debian_linux super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access. 0.7% —
CVE-1999-0360 HIGH 7.2 microsoft site_server MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely. 5.6% —