2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1820CRITICAL9.8register.php in Ultimate PHP Board (UPB) 1.0 and 1.0b uses an administrative account Admin with a capital "A," but allow...
CVE-2002-1821Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized acti...
CVE-2002-1822IBM HTTP Server 1.0 on AS/400 allows remote attackers to obtain the path to the web root directory and other sensitive i...
CVE-2002-1818ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSi...
CVE-2002-1798CRITICAL9.1MidiCart PHP, PHP Plus, and PHP Maxi allows remote attackers to (1) upload arbitrary php files via a direct request to a...
CVE-2002-1819Directory traversal vulnerability in TinyHTTPD 0.1 .0 allows remote attackers to read or execute arbitrary files via a "...
CVE-2002-1823Buffer overflow in the HttpGetRequest function in Zeroo HTTP server 1.5 allows remote attackers to execute arbitrary cod...
CVE-2002-1816CRITICAL9.8Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlier allows remote attackers...
CVE-2002-1827Sendmail 8.9.0 through 8.12.3 allows local users to cause a denial of service by obtaining an exclusive lock on the (1) ...
CVE-2002-1799Cross-site scripting (XSS) vulnerability in phpRank 1.8 allows remote attackers to inject arbitrary web script or HTML v...
CVE-2002-1801ImageFolio 2.23 through 2.27 allows remote attackers to obtain sensitive information via a nonexistent image category, w...
CVE-2002-1817Unknown vulnerability in Veritas Cluster Server (VCS) 1.2 for WindowsNT, Cluster Server 1.3.0 for Solaris, and Cluster S...
CVE-2002-1843Perlbot 1.9.2 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the $text variable i...
CVE-2002-1844HIGH7.8Microsoft Windows Media Player (WMP) 6.3, when installed on Solaris, installs executables with world-writable permission...
CVE-2002-1849ParaChat Server 4.0 does not log users off if the browser's back button is used, which allows remote attackers to cause ...
CVE-2002-1807Cross-site scripting (XSS) vulnerability in phpWebSite 0.8.3 allows remote attackers to inject arbitrary web script or H...
CVE-2002-1646SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration...
CVE-2002-1808Cross-site scripting (XSS) vulnerability in Meunity Community System 1.1 allows remote attackers to inject arbitrary web...
CVE-2002-1814Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long comm...
CVE-2002-1719Unknown vulnerability in Bavo 0.3 allows remote attackers to modify posted messages.
CVE-2002-1846Yet Another Bulletin Board (YaBB) 1.40 and 1.41 does not require a user to submit the correct password before changing i...
CVE-2002-1847Buffer overflow in mplay32.exe of Microsoft Windows Media Player (WMP) 6.3 through 7.1 allows remote attackers to execut...
CVE-2002-1679Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin 2.2.0 allows remote attackers to execute arbitrary script ...
CVE-2002-1802Cross-site scripting (XSS) vulnerability in Xoops 1.0 RC3 allows remote attackers to inject arbitrary web script or HTML...
CVE-2002-1815Directory traversal vulnerability in source.php and source.cgi in Aquonics File Manager 1.5 allows remote attackers to r...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now