2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1994advserver.exe in Advanced Web Server (AdvServer) Professional 1.030000 allows remote attackers to cause a denial of serv...
CVE-2002-1993webbbs_post.pl in WebBBS 4 and 5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the...
CVE-2002-1992Buffer overflow in jrun.dll in ColdFusion MX, when used with IIS 4 or 5, allows remote attackers to cause a denial of se...
CVE-2002-1991PHP file inclusion vulnerability in osCommerce 2.1 execute arbitrary commands via the include_file parameter to include_...
CVE-2002-1990Resin 2.0.5 through 2.1.2 allows remote attackers to reveal physical path information via a URL request for the example ...
CVE-2002-1989Resin 2.1.1 allows remote attackers to cause a denial of service (thread and connection consumption) via multiple URL re...
CVE-2002-1988Resin 2.1.1 allows remote attackers to cause a denial of service (memory consumption and hang) via a URL with long varia...
CVE-2002-1987Directory traversal vulnerability in view_source.jsp in Resin 2.1.2 allows remote attackers to read arbitrary files via ...
CVE-2002-1986Perception LiteServe 2.0 through 2.0.1 allows remote attackers to obtain the source code of CGI scripts via an HTTP requ...
CVE-2002-1985iSMTP 5.0.1 allows remote attackers to cause a denial of service via a long "MAIL FROM" command, possibly triggering a b...
CVE-2002-1984Microsoft Internet Explorer 5.0.1 through 6.0 on Windows 2000 or Windows XP allows remote attackers to cause a denial of...
CVE-2002-1983The timer implementation in QNX RTOS 6.1.0 allows local users to cause a denial of service (hang) and possibly execute a...
CVE-2002-2074SQL injection vulnerability in Mailidx before 20020105 allows remote attackers to execute arbitrary SQL commands via the...
CVE-2002-1981Microsoft SQL Server 2000 through SQL Server 2000 SP2 allows the "public" role to execute the (1) sp_MSSetServerProperti...
CVE-2002-1980Buffer overflow in Volume Manager daemon (vold) of Sun Solaris 2.5.1 through 8 allows local users to execute arbitrary c...
CVE-2002-1979WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote at...
CVE-2002-1978IPFilter 3.1.1 through 3.4.28 allows remote attackers to bypass firewall rules by sending a PASV command string as the a...
CVE-2002-1977Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, whic...
CVE-2002-1976ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode...
CVE-2002-1974The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to ac...
CVE-2002-1973Buffer overflow in CHttpServer::OnParseError in the ISAPI extension (Isapi.cpp) when built using Microsoft Foundation Cl...
CVE-2002-1972Unknown vulnerability in Parallel port powerSwitch (aka pp_powerSwitch) 0.1 does not properly enforce access controls, w...
CVE-2002-1971The ping utility in networking_utils.php in Sourcecraft Networking_Utils 1.0 allows remote attackers to read arbitrary f...
CVE-2002-1970SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and wor...
CVE-2002-2075ICQ 2001a and 2002b allows remote attackers to cause a denial of service (memory consumption and hang) via a contact mes...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now