SAINT top bar Go to home page Search this site Contact SAINT Corporation
SAINT logo







 

 

 

 

 

Vulnerabilities

The vulnerability category list will give you an overview of the types of vulnerabilities which SAINT® can detect.

You can also view SAINT's vulnerability checks by IAVA number. (Available to users registered in .mil and .gov domains only.)

CVE List

Search By Year:  
(Based on CVE version 20061101 and SANS Top 20 version 7.)
CVE SAINT check ID SAINT® Category SANS Top 20
CVE-1999-0002 rpc_mountd mountd vulnerabilities
 
CVE-1999-0003 rpc_tooltalkbo tooltalk version
 
CVE-1999-0005 mail_imap_bo imap version
 
CVE-1999-0006 mail_pop_qpop
mail_pop_two
pop version
 
CVE-1999-0008 rpc_nisd nisd vulnerability
 
CVE-1999-0009 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0010 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0011 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0013 shell_ssh_fsecure
shell_ssh_ssh
SSH AttachmateWRQ vulnerabilities
SSH vulnerabilities
 
CVE-1999-0017 ftp_bounce FTP bounce
 
CVE-1999-0018 rpc_statd rpc statd access
 
CVE-1999-0019 rpc_statd rpc statd access
 
CVE-1999-0021 web_prog_cgi_count http cgi access
 
CVE-1999-0024 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0035 ftp_wuftpold FTP vulnerabilities
 
CVE-1999-0039 web_prog_cgi_webdist http cgi access
 
CVE-1999-0042 mail_imap_bo
mail_pop_two
mail_pop_uw
imap version
pop version
 
CVE-1999-0043 misc_inndbo innd vulnerabilities
 
CVE-1999-0045 web_prog_cgi_nphtestcgi http cgi info
 
CVE-1999-0047 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0048 misc_talk talk vulnerabilities
 
CVE-1999-0058 web_prog_php_phpcgi http cgi access
 
CVE-1999-0059 rpc_sgifam SGI fam vulnerability
 
CVE-1999-0061 printer_bsdlpd
printer_linuxlpd
BSD lpd
Linux lpd
 
CVE-1999-0066 web_prog_cgi_anyform
web_prog_cgi_anyformtwo
http cgi access
 
CVE-1999-0067 web_prog_cgi_phf http cgi access
 
CVE-1999-0070 web_prog_cgi_testcgi http cgi info
 
CVE-1999-0077 misc_tcpseq TCP sequence number prediction
 
CVE-1999-0080 ftp_wuftpold FTP vulnerabilities
 
CVE-1999-0095 mail_smtp_debug Sendmail vulnerabilities
 
CVE-1999-0096 mail_smtp_decode sendmail decode
 
CVE-1999-0100 misc_inndbo innd vulnerabilities
 
CVE-1999-0103 net_chargen packet flooding problems
 
CVE-1999-0129 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0130 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0131 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0146 web_prog_cgi_campas http cgi access
 
CVE-1999-0147 web_prog_cgi_handler http cgi access
 
CVE-1999-0148 web_prog_cgi_aglimpse http cgi access
 
CVE-1999-0149 web_prog_cgi_wrap http cgi info
 
CVE-1999-0168 rpc_nfs_portmap NFS export via portmapper
 
CVE-1999-0172 web_prog_cgi_formmail http cgi access
 
CVE-1999-0174 web_prog_cgi_viewsource http cgi access
 
CVE-1999-0176 web_prog_cgi_webgais http cgi access
 
CVE-1999-0177 web_prog_cgi_uploader http cgi access
 
CVE-1999-0178 web_prog_cgi_wincsample http cgi access
 
CVE-1999-0186 net_snmp_read
net_snmp_write
Guessable Read Community
Guessable Write Community
 
CVE-1999-0191 web_prog_iis_newdsn http IIS samples
 
CVE-1999-0196 web_prog_cgi_websendmail http cgi access
 
CVE-1999-0203 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0204 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0206 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0208 misc_solaris_rpcypupdated Solaris rpc ypupdated vulnerabilities
 
CVE-1999-0210 rpc_statd rpc statd access
 
CVE-1999-0219 ftp_servu Serv U vulnerabilities
 
CVE-1999-0237 web_prog_cgi_guestbook http potential problems
 
CVE-1999-0248 shell_ssh_fsecure
shell_ssh_ssh
SSH AttachmateWRQ vulnerabilities
SSH vulnerabilities
 
CVE-1999-0254 net_snmp_openview
net_snmp_openvieww
Guessable Read Community
Guessable Write Community
 
CVE-1999-0260 web_prog_cgi_jj http cgi access
 
CVE-1999-0262 web_prog_cgi_faxsurvey http cgi access
 
CVE-1999-0264 web_prog_cgi_htmlscript http cgi access
 
CVE-1999-0266 web_prog_cgi_info2www http cgi access
 
CVE-1999-0270 web_prog_cgi_pfdispaly http cgi access
 
CVE-1999-0279 web_prog_cgi_excite http potential problems
 
CVE-1999-0291 misc_wingate Open proxy
 
CVE-1999-0299 printer_bsdlpd BSD lpd
 
CVE-1999-0320 rpc_cmsd calendar manager
 
CVE-1999-0333 net_omniback HP Omniback vulnerabilities
 
CVE-1999-0368 ftp_beroftp
ftp_proftpold
ftp_wuftpold
FTP vulnerabilities
ProFTPD vulnerabilities
 
CVE-1999-0393 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0455 web_prog_cfm_exprcalc http Cold Fusion
 
CVE-1999-0477 web_prog_cfm_openfile http Cold Fusion
 
CVE-1999-0493 rpc_statd rpc statd access
 
CVE-1999-0501 pass_guessed guessed account password
 
CVE-1999-0502 pass_none guessed account password
 
CVE-1999-0503 pass_win guessed account password
 
CVE-1999-0504 pass_winnone guessed account password
 
CVE-1999-0505 pass_win guessed account password
 
CVE-1999-0506 pass_winnone guessed account password
 
CVE-1999-0507 net_asantepass
net_avayapass
net_axispass
net_dynalinkpass
net_gatewaypass
net_netgearzebra
net_password
net_prestige
net_utstarcom
net_verticalpass
default device password
 
CVE-1999-0508 net_asantepass
net_avayapass
net_axispass
net_dynalinkpass
net_gatewaypass
net_netgearzebra
net_password
net_prestige
net_utstarcom
net_verticalpass
default device password
 
CVE-1999-0509 web_prog_shell_ash
web_prog_shell_bash
web_prog_shell_csh
web_prog_shell_ksh
web_prog_shell_perl
web_prog_shell_perlexe
web_prog_shell_sh
web_prog_shell_tcsh
web_prog_shell_zsh
http cgi shells
 
CVE-1999-0512 mail_smtp_relay SMTP mail relay
 
CVE-1999-0513 net_smurf packet flooding problems
 
CVE-1999-0514 net_fraggle packet flooding problems
 
CVE-1999-0515 shell_r_trust remote shell access
 
CVE-1999-0516 net_snmp_read
net_snmp_write
Guessable Read Community
Guessable Write Community
 
CVE-1999-0517 net_snmp_ilmi
net_snmp_ilmiw
net_snmp_ios
net_snmp_nogah
net_snmp_nogahw
net_snmp_openview
net_snmp_openvieww
net_snmp_read
net_snmp_write
Guessable Read Community
Guessable Write Community
Cisco IOS SNMP access
 
CVE-1999-0519 misc_linuxnetbios Linux NetBIOS vulnerability
 
CVE-1999-0520 win_rwshare
win_share
open SMB shares
 
CVE-1999-0524 misc_icmp_netmask
misc_icmp_timestamp
ICMP information disclosure
 
CVE-1999-0526 misc_xhost unrestricted X server access
 
CVE-1999-0527 ftp_writable writable FTP directory
 
CVE-1999-0531 mail_smtp_expn
mail_smtp_vrfy
sendmail info
 
CVE-1999-0534 win_policy_rights_debug
win_policy_rights_driver
win_policy_rights_lock
win_policy_rights_os
win_policy_rights_own
win_policy_rights_priority
win_policy_rights_ptoken
win_policy_rights_share
win_policy_rights_token
win_policy_rights_trav
Windows account rights

Note: Authentication is required to detect this vulnerability
 
CVE-1999-0535 win_policy_account_passcomplex
win_policy_account_passhist
win_policy_account_passlen
win_policy_account_passmax
win_policy_account_passmin
Windows account policy
 
CVE-1999-0554 rpc_nfs_unres unrestricted NFS export
 
CVE-1999-0562 win_registry registry access
 
CVE-1999-0575 win_policy_audit_acctmgmt
win_policy_audit_acctmgmtfail
win_policy_audit_enabled
win_policy_audit_logon
win_policy_audit_logonfail
win_policy_audit_objaccess
win_policy_audit_objaccessfail
win_policy_audit_policy
win_policy_audit_policyfail
win_policy_audit_system
win_policy_audit_systemfail
Windows auditing

Note: Authentication is required to detect this vulnerability
 
CVE-1999-0582 win_policy_account_lockout Windows account policy
 
CVE-1999-0585 win_policy_account_adminrename Windows default account names
 
CVE-1999-0589 win_policy_perm_run
win_policy_perm_runonce
win_policy_perm_schedule
win_policy_perm_uninstall
win_registry
Windows registry permissions
registry access

Note: Authentication is required to detect this vulnerability
 
CVE-1999-0592 win_policy_account_lastuser last user name disclosure

Note: Authentication is required to detect this vulnerability
 
CVE-1999-0612 misc_finger_info excessive finger info
 
CVE-1999-0615 net_snmp_snmp SNMP vulnerabilities
 
CVE-1999-0616 ftp_tftpread
ftp_tftptrav
ftp_tftpwrite
net_cisco_tftp
TFTP file access
Cisco IOS TFTP Server
 
CVE-1999-0618 shell_r_rexec rexec on the Internet
 
CVE-1999-0624 rpc_rstatd rstatd vulnerability
 
CVE-1999-0626 rpc_rusers rusersd vulnerability
 
CVE-1999-0627 rpc_rexd REXD access
 
CVE-1999-0649 ftp_fsp File Service Protocol
 
CVE-1999-0651 shell_r_rlogin
shell_r_rsh
remote login on the Internet
remote shell on the Internet
 
CVE-1999-0652 database_mssql_mssql
database_mysql_version
database_oracle_ias
Microsoft SQL Server
MySQL vulnerabilities
Oracle vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0660 misc_backdoor_backorifice
misc_backdoor_deepthroat
misc_backdoor_drat
misc_backdoor_evilftp
misc_backdoor_gatecrasher
misc_backdoor_girlfriend
misc_backdoor_glacier
misc_backdoor_hackatack
misc_backdoor_netbus
misc_backdoor_netsphere
misc_backdoor_phasezero
misc_backdoor_portalofdoom
misc_backdoor_qaz
misc_backdoor_remotenc
misc_backdoor_subseven
misc_bnc
misc_exploit_rootkit
backdoor found
hacker program found
rootkits
 
CVE-1999-0662 win_patch_authenticode
win_patch_bytecode
win_patch_certvalid
win_patch_com
win_patch_connman
win_patch_cursor
win_patch_debugger
win_patch_dhtmledit
win_patch_directx
win_patch_excel
win_patch_gdiplus
win_patch_hcp
win_patch_help
win_patch_helpcenter
win_patch_htmlconv
win_patch_htmlhelp
win_patch_htmlhelpcross
win_patch_hyperlink
win_patch_hyperterm
win_patch_ie_crossdom
win_patch_ie_css
win_patch_ie_dhtml
win_patch_ie_modal
win_patch_ie_patch
win_patch_ie_srcbo
win_patch_ie_travellog
win_patch_indexing
win_patch_jdbc
win_patch_jet
win_patch_jetiv
win_patch_kerneldebug
win_patch_kernelpe
win_patch_liclog
win_patch_listbox
win_patch_locator
win_patch_mciwndx
win_patch_mdac
win_patch_messenger
win_patch_ms04011
win_patch_msasn1
win_patch_netdde
win_patch_netmeeting
win_patch_nt4sp6asrp1
win_patch_ntdll
win_patch_ntrpc
win_patch_officexp
win_patch_ole
win_patch_posixbo
win_patch_rasphonebook
win_patch_redirect
win_patch_rpc
win_patch_rpcdos
win_patch_rpcrunlib
win_patch_rpcss
win_patch_shareprovider
win_patch_shell
win_patch_shellapp
win_patch_shellclsid
win_patch_shellexecute
win_patch_shellpath
win_patch_skins
win_patch_sp2srp1
win_patch_taskbo
win_patch_troubleshooter
win_patch_uncprovider
win_patch_upnp
win_patch_urlscript
win_patch_utility
win_patch_wins
win_patch_wmf
win_patch_wmppng
win_patch_wordpadwfwc
win_patch_workstation
win_patch_wpconv
win_patch_xpshell
win_patch_zipfolder
Windows updates needed
Microsoft Office vulnerabilities
Internet Explorer vulnerabilities
License Logging Service
Windows Locator vulnerability
NetDDE vulnerability
WINS vulnerability

Note: Authentication is required to detect this vulnerability
 
CVE-1999-0693 rpc_tooltalkbo tooltalk version
 
CVE-1999-0696 rpc_cmsd calendar manager
 
CVE-1999-0704 rpc_amd amd buffer overflow
 
CVE-1999-0705 misc_inndbo innd vulnerabilities
 
CVE-1999-0710 web_proxy_squid Squid vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0736 web_prog_iis_showcode http IIS samples
 
CVE-1999-0738 web_prog_iis_code http IIS samples
 
CVE-1999-0739 web_prog_iis_codebrws
web_prog_iis_sdkcodebrws
http IIS samples
 
CVE-1999-0744 web_server_netscape_fasttrack
web_server_netscape_netscape
Netscape vulnerabilities
 
CVE-1999-0751 web_server_netscape_fasttrack
web_server_netscape_netscape
Netscape vulnerabilities
 
CVE-1999-0752 web_server_netscape_fasttrack
web_server_netscape_netscape
Netscape vulnerabilities
 
CVE-1999-0756 web_prog_cfm_startstop http Cold Fusion
 
CVE-1999-0758 web_server_netscape_fasttrack
web_server_netscape_netscape
Netscape vulnerabilities
 
CVE-1999-0771 web_tool_cim Compaq Insight Manager http server
 
CVE-1999-0772 web_tool_cim Compaq Insight Manager http server
 
CVE-1999-0784 database_oracle_tns Oracle TNS Listener
 
CVE-1999-0789 ftp_aix AIX FTP vulnerabilities
 
CVE-1999-0808 misc_dhcp dhcpd vulnerabilities
 
CVE-1999-0832 rpc_nfsd mountd vulnerabilities
 
CVE-1999-0833 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0834 shell_ssh_ssh SSH vulnerabilities
 
CVE-1999-0835 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0837 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0838 ftp_servu Serv U vulnerabilities
 
CVE-1999-0848 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0849 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0851 dns_bindbo
dns_potential
DNS vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0853 web_server_netscape_fasttrack
web_server_netscape_netscape
Netscape vulnerabilities
 
CVE-1999-0868 misc_inndbo innd vulnerabilities
 
CVE-1999-0874 web_server_iis_iis http IIS access

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-0878 ftp_beroftp
ftp_proftpold
ftp_wuftpold
FTP vulnerabilities
ProFTPD vulnerabilities
 
CVE-1999-0879 ftp_beroftp
ftp_proftpold
ftp_wuftpold
FTP vulnerabilities
ProFTPD vulnerabilities
 
CVE-1999-0880 ftp_beroftp
ftp_proftpold
ftp_wuftpold
FTP vulnerabilities
ProFTPD vulnerabilities
 
CVE-1999-0883 web_server_zeus Zeus vulnerabilities
 
CVE-1999-0884 web_server_zeus Zeus vulnerabilities
 
CVE-1999-0911 ftp_proftpold ProFTPD vulnerabilities
 
CVE-1999-0922 web_prog_cfm_sourcewindow http Cold Fusion
 
CVE-1999-0923 web_prog_cfm_viewex http Cold Fusion
 
CVE-1999-0924 web_prog_cfm_syntax http Cold Fusion
 
CVE-1999-0950 ftp_wftpd WFTPD vulnerabilities
 
CVE-1999-0951 web_prog_cgi_imagemap http cgi access
 
CVE-1999-0953 web_prog_cgi_wwwboard http cgi info
 
CVE-1999-0955 ftp_wuftpold FTP vulnerabilities
 
CVE-1999-0970 web_server_omni OmniHTTPd vulnerabilities
 
CVE-1999-0971 mail_smtp_eximbo Exim vulnerability
 
CVE-1999-0977 rpc_sadmind sadmind
 
CVE-1999-0999 database_mssql_mssql Microsoft SQL Server

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-1011 web_server_rds ODBC RDS
 
CVE-1999-1109 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-1236 mail_pop_iaemailserver
mail_smtp_iaemailserver
Internet Anywhere vulnerabilities
 
CVE-1999-1273 web_proxy_squid Squid vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-1309 mail_smtp_sendmail Sendmail vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-1376 web_cms_fp_fpcount http FrontPage
 
CVE-1999-1456 web_server_read http server read access
 
CVE-1999-1457 web_server_thttpd thttpd vulnerabilities
 
CVE-1999-1481 web_proxy_squid Squid vulnerabilities

Note: Authentication is recommended to improve the accuracy of this check
 
CVE-1999-1500 mail_pop_iaemailserver Internet Anywhere vulnerabilities
 
= CVE specifically mentioned in SANS Top 20
* = SANS Top 20 vulnerability, but not specifically mentioned

Vulnerability Categories

SAINT checks for one or more vulnerabilities in each of the following categories.
REDCritical Problems
YELLOWAreas of Concern
BROWNPotential Problems


Back to SAINT
  Copyright SAINT Corporation. All Rights Reserved. Privacy information Legal information Site map