2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1750csGuestbook.cgi in CGISCRIPT.NET csGuestbook 1.0 allows remote attackers to execute arbitrary Perl code via the setup pa...
CVE-2002-1868Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.
CVE-2002-1873Microsoft Exchange 2000, when used with Microsoft Remote Procedure Call (MSRPC), allows remote attackers to cause a deni...
CVE-2002-1877NETGEAR FM114P allows remote attackers to bypass access restrictions for web sites via a URL that uses the IP address in...
CVE-2002-1901Cross-site scripting (XSS) vulnerability in Bodo Bauer BBGallery 1.0 allows remote attackers to inject arbitrary web scr...
CVE-2002-1904Buffer overflow in the Log function in util.c in GazTek ghttpd 1.4 through 1.4.3 allows remote attackers to execute arbi...
CVE-2002-1917CRLF injection vulnerability in the "User Profile: Send Email" feature in Geeklog 1.35 and 1.3.5sr1 allows remote attack...
CVE-2002-1863Iomega Network Attached Storage (NAS) A300U, and possibly other models, does not allow the FTP service to be disabled, w...
CVE-2002-1862SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connec...
CVE-2002-1864Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitra...
CVE-2002-1848TightVNC before 1.2.4 running on Windows stores unencrypted passwords in the password text control of the WinVNC Propert...
CVE-2002-1849ParaChat Server 4.0 does not log users off if the browser's back button is used, which allows remote attackers to cause ...
CVE-2002-1851Buffer overflow in WS_FTP Pro 7.5 allows remote attackers to execute code on a client system via unknown attack vectors.
CVE-2002-1843Perlbot 1.9.2 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the $text variable i...
CVE-2002-1844HIGH7.8Microsoft Windows Media Player (WMP) 6.3, when installed on Solaris, installs executables with world-writable permission...
CVE-2002-1845Cross-site scripting (XSS) vulnerability in index.php in Yet Another Bulletin Board (YaBB) 1.40 and 1.41 allows remote a...
CVE-2002-1850HIGH7.5mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang ...
CVE-2002-1896Buffer overflow in Alsaplayer 0.99.71, when installed setuid root, allows local users to execute arbitrary code via a lo...
CVE-2002-1865Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (...
CVE-2002-1897MyWebServer LLC MyWebServer 1.0.2 allows remote attackers to cause a denial of service (crash) via a long HTTP request, ...
CVE-2002-1837The getAlbumToDisplay function in idsShared.pm for Image Display System (IDS) 0.81 allows remote attackers to determine ...
CVE-2002-1846Yet Another Bulletin Board (YaBB) 1.40 and 1.41 does not require a user to submit the correct password before changing i...
CVE-2002-1838Charities.cron 1.0.2 through 1.6.0 allows local users to write to arbitrary files via a symlink attack on temporary file...
CVE-2002-1847Buffer overflow in mplay32.exe of Microsoft Windows Media Player (WMP) 6.3 through 7.1 allows remote attackers to execut...
CVE-2002-1822IBM HTTP Server 1.0 on AS/400 allows remote attackers to obtain the path to the web root directory and other sensitive i...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now