Back to Database
Status published
High
CVE-1999-1090
The default configuration of NCSA Telnet package for Macintosh and...
Vulnerability Description
The default configuration of NCSA Telnet package for Macintosh and PC enables FTP, even though it does not include an "ftp=yes" line, which allows remote attackers to read and modify arbitrary files.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-1999-1090
Credits & Attribution
No credits recorded in the NVD database.
References
More from ncsa
View All →CVE-2011-0738
MyProxy 5.0 through 5.2, as used in Globus Toolkit 5.0.0...
Medium
4.3
CVE-2005-0469
Buffer overflow in the slc_add_reply function in various BSD-based Telnet...
High
7.5
CVE-2005-0468
Heap-based buffer overflow in the env_opt_add function in telnet.c for...
High
7.5
CVE-1999-0267
Buffer overflow in NCSA HTTP daemon v1.3 allows remote command...
High
7.5
CVE-1999-0235
Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote...
Critical
10
Affected Vendor
ncsa
View all reports →Affected Software
telnet
Vulnerable Versions:
Unknown
Timeline
Official Publish:
March 9th, 2002
Last Modified:
August 1st, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.