CVEs (46)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 3Windows 95 Windows 98Windows 98seApr 16, 2026 Mar 4, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability. |
1Microsoft 3Windows 95 Windows 98Windows NtApr 16, 2026 Feb 18, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive. |
1Microsoft 3Windows 95 Windows 98Windows NtApr 16, 2026 Feb 4, 2000 N/A· v4 N/A· v3 2.1 LOW· v2 Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file. |
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrator logs in remotely, which allows remote attackers to read arbitrary files by mapping the n...Show more |
Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords. |
1Microsoft 3Windows 95 Windows 98Windows NtApr 16, 2026 Dec 10, 1999 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when...Show more |
A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords. |
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability. |
1Microsoft 4Terminal Server Windows 95Windows 98se+1 moreApr 16, 2026 Sep 20, 1999 N/A· v4 N/A· v3 7.5 HIGH· v2 Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed Route Pointer" vulnerability. |
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument. |
2Microsoft Sun5Solaris SunosWindows 2000+2 moreApr 16, 2026 Aug 11, 1999 N/A· v4 N/A· v3 7.5 HIGH· v2 DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes. |
1Microsoft 4Windows 2000 Windows 95Windows 98+1 moreApr 16, 2026 Jul 3, 1999 N/A· v4 N/A· v3 7.8 HIGH· v2 Denial of service in various Windows systems via malformed, fragmented IGMP packets. |
1Microsoft 5Excel Windows 2000Windows 95+2 moreApr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 2.6 LOW· v2 A remote attacker can disable the virus warning mechanism in Microsoft Excel 97. |
1Microsoft 3Windows 95 Windows 98Windows NtApr 16, 2026 Apr 12, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files. |
1Microsoft 3Windows 95 Windows 98Windows NtApr 16, 2026 Mar 8, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables. |
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) pac...Show more |
TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target's last sequence...Show more |
Bonk variation of teardrop IP fragmentation denial of service. |
2Jgaa Microsoft3Warftpd Windows 95Windows NtApr 16, 2026 Feb 1, 1998 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in War FTP allows remote execution of commands. |
4Caldera HpMicrosoft+1 more5Hp Ux OpenlinuxSunos+2 moreApr 16, 2026 Dec 16, 1997 N/A· v4 N/A· v3 5.0 MEDIUM· v2 A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2. |