2002 CVE Vulnerabilities
2,393 CVEs published in 2002.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2002-1930 | — | — | 5.5% | Dec 31, 2002 | Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remote attackers to execute arbitrary code via a SOCKS4 request w... |
| CVE-2002-1623 | — | — | 48.6% | Dec 31, 2002 | The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, doe... |
| CVE-2002-1919 | — | — | 1.5% | Dec 31, 2002 | SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and... |
| CVE-2002-2364 | — | — | 0.8% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web s... |
| CVE-2002-1926 | — | — | 1.7% | Dec 31, 2002 | Directory traversal vulnerability in source.php in Aquonics File Manager 1.5 allows remote attackers to read arbitrary f... |
| CVE-2002-1626 | — | — | 2.0% | Dec 31, 2002 | Directory traversal vulnerability in Mike Spice My Calendar before 1.5 allows remote attackers to write arbitrary files ... |
| CVE-2002-1951 | — | — | 5.8% | Dec 31, 2002 | Buffer overflow in GoAhead WebServer 2.1 allows remote attackers to execute arbitrary code via a long HTTP GET request w... |
| CVE-2002-1632 | — | — | 5.4% | Dec 31, 2002 | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var... |
| CVE-2002-1936 | — | — | 1.5% | Dec 31, 2002 | UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to ... |
| CVE-2002-1630 | — | — | 7.1% | Dec 31, 2002 | The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails. |
| CVE-2002-1947 | — | — | 1.4% | Dec 31, 2002 | Webmin 0.21 through 1.0 uses the same built-in SSL key for all installations, which allows remote attackers to eavesdrop... |
| CVE-2002-1633 | — | — | 0.6% | Dec 31, 2002 | Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to... |
| CVE-2002-1916 | — | — | 1.3% | Dec 31, 2002 | Pirch and RusPirch, when auto-log is enabled, allows remote attackers to cause a denial of service (crash) via a nicknam... |
| CVE-2002-1634 | — | — | 17.0% | Dec 31, 2002 | Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso... |
| CVE-2002-1650 | — | — | 3.5% | Dec 31, 2002 | The spell checker plugin (check_me.mod.php) for SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary c... |
| CVE-2002-1649 | — | — | 1.4% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in read_body.php in SquirrelMail before 1.2.3 allows remote attackers to execut... |
| CVE-2002-1651 | — | — | 1.3% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and ... |
| CVE-2002-1653 | — | — | 1.1% | Dec 31, 2002 | Farm9 Cryptcat, when started in server mode with the -e option, does not enable encryption, which allows clients to comm... |
| CVE-2002-1912 | HIGH | 7.5 | 3.3% | Dec 31, 2002 | SkyStream EMR5000 1.16 through 1.18 does not drop packets or disable the Ethernet interface when the buffers are full, w... |
| CVE-2002-1655 | — | — | 2.3% | Dec 31, 2002 | The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause... |
| CVE-2002-1736 | — | — | 1.2% | Dec 31, 2002 | Unknown vulnerability in CGINews before 1.06 allow remote attackers to read arbitrary files via "unfiltered user input." |
| CVE-2002-1656 | — | — | 3.9% | Dec 31, 2002 | X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the pas... |
| CVE-2002-1661 | — | — | 2.3% | Dec 31, 2002 | The leafnode server in leafnode 1.9.20 to 1.9.29 allows remote attackers to cause a denial of service (infinite loop) wh... |
| CVE-2002-1660 | — | — | 11.1% | Dec 31, 2002 | calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in... |
| CVE-2002-1913 | — | — | 1.5% | Dec 31, 2002 | phptonuke.php in myPHPNuke 1.8.8 allows remote attackers to read arbitrary files via a full pathname in the filnavn vari... |
Check if your code is affected by 2002 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now