2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2002-1632Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var...
CVE-2002-1631SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers...
CVE-2002-1646SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration...
CVE-2002-1634Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso...
CVE-2002-1963Linux kernel 2.4.1 through 2.4.19 sets root's NR_RESERVED_FILES limit to 10 files, which allows local users to cause a d...
CVE-2002-1635The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl direct...
CVE-2002-1651Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and ...
CVE-2002-1648Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail before 1.2.3 allows remote attackers to s...
CVE-2002-1650The spell checker plugin (check_me.mod.php) for SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary c...
CVE-2002-1649Cross-site scripting (XSS) vulnerability in read_body.php in SquirrelMail before 1.2.3 allows remote attackers to execut...
CVE-2002-1654iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP...
CVE-2002-1653Farm9 Cryptcat, when started in server mode with the -e option, does not enable encryption, which allows clients to comm...
CVE-2002-1655The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause...
CVE-2002-1656X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the pas...
CVE-2002-1666Unknown vulnerability in Oracle E-Business Suite 11i.1 through 11i.6 allows remote attackers to execute unauthorized PL/...
CVE-2002-1663The Post_Method function in method.c for Monkey HTTP Daemon before 0.5.1 allows remote attackers to cause a denial of se...
CVE-2002-1965Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to injec...
CVE-2002-1664Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and po...
CVE-2002-1668HP-UX 11.11 and earlier allows local users to cause a denial of service (kernel deadlock), due to a "file system weaknes...
CVE-2002-1667The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM ob...
CVE-2002-1669pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow loca...
CVE-2002-1670Microsoft Windows XP Professional upgrade edition overwrites previously installed patches for Internet Explorer 6.0, lea...
CVE-2002-1675Format string vulnerability in the Cio_PrintF function of cio_main.c in Unreal IRCd 3.1.1 allows remote attackers to cau...
CVE-2002-1674procfs on FreeBSD before 4.5 allows local users to cause a denial of service (kernel panic) by removing a file that the ...
CVE-2002-1967Buffer overflow in XiRCON 1.0 Beta 4 allows remote attackers to cause a denial of service (disconnect) via a long (1) ct...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now