2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1882Unknown vulnerability in AolSecurityPrivate.class in Oracle E-Business Suite 11i 11.1 through 11.6 allows remote attacke...
CVE-2002-1871pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark...
CVE-2002-1884index.php in Py-Membres 3.1 allows remote attackers to log in as an administrator by setting the pymembs parameter to "a...
CVE-2002-1873Microsoft Exchange 2000, when used with Microsoft Remote Procedure Call (MSRPC), allows remote attackers to cause a deni...
CVE-2002-1887PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute a...
CVE-2002-1915MEDIUM5.5tip on multiple BSD-based operating systems allows local users to cause a denial of service (execution prevention) by us...
CVE-2002-1874astrocam.cgi in AstroCam 0.9-1-1 through 1.4.0 allows remote attackers to execute arbitrary commands via shell metachara...
CVE-2002-1883Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess commun...
CVE-2002-1632Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var...
CVE-2002-1870Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow ...
CVE-2002-1773Buffer overflow in ICQ 2.6x for MacOS X 10.0 through 10.1.2 allows remote attackers to cause a denial of service and pos...
CVE-2002-1875Entercept Agent 2.5 agent for Windows, released before May 21, 2002, allows local administrative users to obtain the ent...
CVE-2002-1908Microsoft IIS 5.0 and 5.1 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request wit...
CVE-2002-1889Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote atta...
CVE-2002-1910HIGH7.5Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), w...
CVE-2002-1891Buffer overflow in IRCIT 0.3.1 IRC client allows remote attackers to execute arbitrary code via a long invite request.
CVE-2002-1916Pirch and RusPirch, when auto-log is enabled, allows remote attackers to cause a denial of service (crash) via a nicknam...
CVE-2002-1904Buffer overflow in the Log function in util.c in GazTek ghttpd 1.4 through 1.4.3 allows remote attackers to execute arbi...
CVE-2002-1735Buffer overflow in dlogin 1.0a could allow local users to gain privileges via unknown attack vectors.
CVE-2002-1897MyWebServer LLC MyWebServer 1.0.2 allows remote attackers to cause a denial of service (crash) via a long HTTP request, ...
CVE-2002-1921The default configuration of MySQL 3.20.32 through 3.23.52, when running on Windows, does set the bind address to the lo...
CVE-2002-1866Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow re...
CVE-2002-1919SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and...
CVE-2002-1864Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitra...
CVE-2002-1865Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now