2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1692Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filena...
CVE-2002-1697HIGH7.5Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same cipherte...
CVE-2002-1696MEDIUM5.5Microsoft Outlook plug-in PGP version 7.0, 7.0.3, and 7.0.4 silently saves a decrypted copy of a message to hard disk wh...
CVE-2002-1698Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service ...
CVE-2002-1699SQL injection vulnerability in ASP Client Check (ASPCC) 1.3 and 1.5 allows remote attackers to bypass authentication and...
CVE-2002-1720SQL injection vulnerability in Spooky Login 2.0 through 2.5 allows remote attackers to bypass authentication and gain pr...
CVE-2002-1745HIGH7.5Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers to view the source code ...
CVE-2002-1706HIGH7.5Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remo...
CVE-2002-1712Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e...
CVE-2002-1711BasiliX 1.1.0 saves attachments in a world readable /tmp/BasiliX directory, which allows local users to read other users...
CVE-2002-1707install.php in phpBB 2.0 through 2.0.1, when "allow_url_fopen" and "register_globals" variables are set to "on", allows ...
CVE-2002-1708Cross-site scripting vulnerability (XSS) in BasiliX Webmail 1.10 allows remote attackers to execute arbitrary script as ...
CVE-2002-1709SQL injection vulnerability in BasiliX Webmail 1.10 allows remote attackers to obtain sensitive information or possibly ...
CVE-2002-1767Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as ...
CVE-2002-1714Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to cause a denial of service (crash) via an object o...
CVE-2002-1754Buffer overflow in Novell NetWare Client 4.80 through 4.83 allows local users to cause a denial of service (crash) by us...
CVE-2002-1713MEDIUM5.5The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-...
CVE-2002-1784Unknown vulnerability in inetd in HP Tru64 Unix 4.0f through 5.1a allows remote attackers to cause a denial of service v...
CVE-2002-1768Cisco IOS 11.1 through 12.2, when HSRP support is not enabled, allows remote attackers to cause a denial of service (CPU...
CVE-2002-1769Microsoft Site Server 3.0 prior to SP4 installs a default user, LDAP_Anonymous, with a default password of LdapPassword_...
CVE-2002-1770Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL...
CVE-2002-1780BPM Studio Pro 4.2 by ALCATech GmbH includes a webserver that allows a remote attacker to cause a denial of service (cra...
CVE-2002-1744Directory traversal vulnerability in CodeBrws.asp in Microsoft IIS 5.0 allows remote attackers to view source code and d...
CVE-2002-1719Unknown vulnerability in Bavo 0.3 allows remote attackers to modify posted messages.
CVE-2002-1974The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to ac...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now