2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2002-2432Unspecified vulnerability in NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote attackers to caus...
CVE-2002-2431Unspecified vulnerability in GoAhead WebServer before 2.1.4 allows remote attackers to cause "incorrect behavior" via un...
CVE-2002-2430GoAhead WebServer before 2.1.1 allows remote attackers to cause a denial of service (CPU consumption) by performing a so...
CVE-2002-2429webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service (daemon crash) via an HTTP...
CVE-2002-2428webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service (NULL pointer dereference ...
CVE-2002-2427The security handler in GoAhead WebServer before 2.1.1 allows remote attackers to bypass authentication and obtain acces...
CVE-2002-1370Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1367. Reason: This CAN was originally assigned...
CVE-2002-0646Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0371. Reason: This candidate is a reservation ...
CVE-2002-1581Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view ...
CVE-2002-1582compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers...
CVE-2002-1583Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbi...
CVE-2002-1580Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code v...
CVE-2002-0385Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a ...
CVE-2002-1579SAP GUI (Sapgui) 4.6D allows remote attackers to cause a denial of service (crash) via a connection to a high-numbered p...
CVE-2002-1578The default installation of SAP R/3, when using Oracle and SQL*net V2 3.x, 4.x, and 6.10, allows remote attackers to obt...
CVE-2002-1576lserver in SAP DB 7.3 and earlier uses the current working directory to find and execute the lserversrv program, which a...
CVE-2002-1577SAP R/3 2.0B to 4.6D installs several clients with default users and passwords, which allows remote attackers to gain pr...
CVE-2002-1574Buffer overflow in the ixj telephony card driver in Linux before 2.4.20 has unknown impact and attack vectors.
CVE-2002-1575cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters ...
CVE-2002-0712Entrust Authority Security Manager (EASM) 6.0 does not properly require multiple master users to change the password of ...
CVE-2002-0034The Microsoft CONVERT.EXE program, when used on Windows 2000 and Windows XP systems, does not apply the default NTFS per...
CVE-2002-1568OpenSSL 0.9.6e uses assertions when detecting buffer overflow attacks instead of less severe mechanisms, which allows re...
CVE-2002-1569gv 3.5.8, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters ...
CVE-2002-1570Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execu...
CVE-2002-1567Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1 allows remote attackers to execute arbitrary web script an...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now