2002 CVE Vulnerabilities
2,393 CVEs published in 2002.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2002-1692 | — | — | 1.5% | Dec 31, 2002 | Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filena... |
| CVE-2002-1697 | HIGH | 7.5 | 0.8% | Dec 31, 2002 | Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same cipherte... |
| CVE-2002-1696 | MEDIUM | 5.5 | 0.3% | Dec 31, 2002 | Microsoft Outlook plug-in PGP version 7.0, 7.0.3, and 7.0.4 silently saves a decrypted copy of a message to hard disk wh... |
| CVE-2002-1698 | — | — | 15.5% | Dec 31, 2002 | Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service ... |
| CVE-2002-1699 | — | — | 2.6% | Dec 31, 2002 | SQL injection vulnerability in ASP Client Check (ASPCC) 1.3 and 1.5 allows remote attackers to bypass authentication and... |
| CVE-2002-1720 | — | — | 2.7% | Dec 31, 2002 | SQL injection vulnerability in Spooky Login 2.0 through 2.5 allows remote attackers to bypass authentication and gain pr... |
| CVE-2002-1745 | HIGH | 7.5 | 17.7% | Dec 31, 2002 | Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers to view the source code ... |
| CVE-2002-1706 | HIGH | 7.5 | 1.2% | Dec 31, 2002 | Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remo... |
| CVE-2002-1712 | — | — | 29.3% | Dec 31, 2002 | Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e... |
| CVE-2002-1711 | — | — | 0.3% | Dec 31, 2002 | BasiliX 1.1.0 saves attachments in a world readable /tmp/BasiliX directory, which allows local users to read other users... |
| CVE-2002-1707 | — | — | 1.4% | Dec 31, 2002 | install.php in phpBB 2.0 through 2.0.1, when "allow_url_fopen" and "register_globals" variables are set to "on", allows ... |
| CVE-2002-1708 | — | — | 4.3% | Dec 31, 2002 | Cross-site scripting vulnerability (XSS) in BasiliX Webmail 1.10 allows remote attackers to execute arbitrary script as ... |
| CVE-2002-1709 | — | — | 1.2% | Dec 31, 2002 | SQL injection vulnerability in BasiliX Webmail 1.10 allows remote attackers to obtain sensitive information or possibly ... |
| CVE-2002-1767 | — | — | 3.8% | Dec 31, 2002 | Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as ... |
| CVE-2002-1714 | — | — | 19.4% | Dec 31, 2002 | Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to cause a denial of service (crash) via an object o... |
| CVE-2002-1754 | — | — | 0.4% | Dec 31, 2002 | Buffer overflow in Novell NetWare Client 4.80 through 4.83 allows local users to cause a denial of service (crash) by us... |
| CVE-2002-1713 | MEDIUM | 5.5 | 0.4% | Dec 31, 2002 | The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-... |
| CVE-2002-1784 | — | — | 2.7% | Dec 31, 2002 | Unknown vulnerability in inetd in HP Tru64 Unix 4.0f through 5.1a allows remote attackers to cause a denial of service v... |
| CVE-2002-1768 | — | — | 1.6% | Dec 31, 2002 | Cisco IOS 11.1 through 12.2, when HSRP support is not enabled, allows remote attackers to cause a denial of service (CPU... |
| CVE-2002-1769 | — | — | 11.7% | Dec 31, 2002 | Microsoft Site Server 3.0 prior to SP4 installs a default user, LDAP_Anonymous, with a default password of LdapPassword_... |
| CVE-2002-1770 | — | — | 1.7% | Dec 31, 2002 | Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL... |
| CVE-2002-1780 | — | — | 1.6% | Dec 31, 2002 | BPM Studio Pro 4.2 by ALCATech GmbH includes a webserver that allows a remote attacker to cause a denial of service (cra... |
| CVE-2002-1744 | — | — | 63.6% | Dec 31, 2002 | Directory traversal vulnerability in CodeBrws.asp in Microsoft IIS 5.0 allows remote attackers to view source code and d... |
| CVE-2002-1719 | — | — | 2.1% | Dec 31, 2002 | Unknown vulnerability in Bavo 0.3 allows remote attackers to modify posted messages. |
| CVE-2002-1974 | — | — | 2.8% | Dec 31, 2002 | The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to ac... |
Check if your code is affected by 2002 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now