2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1885PHP remote file inclusion vulnerability in showhits.php3 for PowerPhlogger (PPhlogger) 2.0.9 through 2.2.2 allows remote...
CVE-2002-1886TightAuction 3.0 stores config.inc under the web document root with insufficient access control, which allows remote att...
CVE-2002-1803Cross-site scripting (XSS) vulnerability in PHP-Nuke 6.0 allows remote attackers to inject arbitrary web script or HTML ...
CVE-2002-1890rhmask 1.0-9 in Red Hat Linux 7.1 allows local users to overwrite arbitrary files via a symlink attack on the mask file.
CVE-2002-1891Buffer overflow in IRCIT 0.3.1 IRC client allows remote attackers to execute arbitrary code via a long invite request.
CVE-2002-1892NETGEAR FVS318 running firmware 1.1 stores the username and password in a readable format when a backup of the configura...
CVE-2002-1828Savant Webserver 3.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request with a negativ...
CVE-2002-1895The servlet engine in Jakarta Apache Tomcat 3.3 and 4.0.4, when using IIS and the ajp1.3 connector, allows remote attack...
CVE-2002-1899Cross-site scripting (XSS) vulnerability in IceWarp Web Mail 3.3.3 and 3.4.5 allows remote attackers to inject arbitrary...
CVE-2002-1901Cross-site scripting (XSS) vulnerability in Bodo Bauer BBGallery 1.0 allows remote attackers to inject arbitrary web scr...
CVE-2002-1976ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode...
CVE-2002-1674procfs on FreeBSD before 4.5 allows local users to cause a denial of service (kernel panic) by removing a file that the ...
CVE-2002-1974The FTP service in Zaurus PDAs SL-5000D and SL-5500 does not require authentication, which allows remote attackers to ac...
CVE-2002-1977Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, whic...
CVE-2002-1673The web interface for Webmin 0.92 does not properly quote or filter script code in files that are displayed to the inter...
CVE-2002-1675Format string vulnerability in the Cio_PrintF function of cio_main.c in Unreal IRCd 3.1.1 allows remote attackers to cau...
CVE-2002-1973Buffer overflow in CHttpServer::OnParseError in the ISAPI extension (Isapi.cpp) when built using Microsoft Foundation Cl...
CVE-2002-1979WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote at...
CVE-2002-1987Directory traversal vulnerability in view_source.jsp in Resin 2.1.2 allows remote attackers to read arbitrary files via ...
CVE-2002-2002Buffer overflow in libc in Compaq Tru64 4.0F, 5.0, 5.1 and 5.1A allows attackers to execute arbitrary code via long (1) ...
CVE-2002-1699SQL injection vulnerability in ASP Client Check (ASPCC) 1.3 and 1.5 allows remote attackers to bypass authentication and...
CVE-2002-1970SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and wor...
CVE-2002-1670Microsoft Windows XP Professional upgrade edition overwrites previously installed patches for Internet Explorer 6.0, lea...
CVE-2002-1671Microsoft Internet Explorer 5.0, 5.01, and 5.5 allows remote attackers to monitor the contents of the clipboard via the ...
CVE-2002-1971The ping utility in networking_utils.php in Sourcecraft Networking_Utils 1.0 allows remote attackers to read arbitrary f...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now