2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1938Virgil CGI Scanner 0.9 allows remote attackers to execute arbitrary commands via the (1) tar (TARGET) or (2) zielport (Z...
CVE-2002-1937Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configu...
CVE-2002-1936UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to ...
CVE-2002-1935Pingtel Xpressa 1.2.5 through 2.0.1 uses predictable (1) Call-ID, (2) CSeq, and (3) "To" and "From" SIP URL values in a ...
CVE-2002-1934Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 2.0.1 leaks sensitive information during boot-up, which allo...
CVE-2002-1933The terminal services screensaver for Microsoft Windows 2000 does not automatically lock the terminal window if the wind...
CVE-2002-1932Microsoft Windows XP and Windows 2000, when configured to send administrative alerts and the "Do not overwrite events (c...
CVE-2002-1931Cross-site scripting (XSS) vulnerability in PHP Arena paFileDB 1.1.3 and 2.1.1 allows remote attackers to inject arbitra...
CVE-2002-1930Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remote attackers to execute arbitrary code via a SOCKS4 request w...
CVE-2002-1929Cross-site scripting (XSS) vulnerability in pafiledb.php in PHP Arena paFileDB 1.1.3 through 3.0 allows remote attackers...
CVE-2002-2075ICQ 2001a and 2002b allows remote attackers to cause a denial of service (memory consumption and hang) via a contact mes...
CVE-2002-2269Directory traversal vulnerability in Webster HTTP Server allows remote attackers to read arbitrary files via a .. (dot d...
CVE-2002-2076Directory traversal vulnerability in Lil' HTTP server 2.1 and 2.2 allows remote attackers to read arbitrary files via a ...
CVE-2002-2077The DCOM client in Windows 2000 before SP3 does not properly clear memory before sending an "alter context" request, whi...
CVE-2002-2270Unspecified vulnerability in the ied command in HP-UX 10.10, 10.20, and 11.0 allows local users to view "normally invisi...
CVE-2002-2363VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.
CVE-2002-2409Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard...
CVE-2002-2078Heap-based buffer overflow in Floositek (1) FTGate Pro 1.05 and (2) FTGate Office 1.05 allows remote attackers to cause ...
CVE-2002-2079mosix-protocol-stack in Multicomputer Operating System for UnIX (MOSIX) 1.5.7 allows remote attackers to cause a denial ...
CVE-2002-2271Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attack...
CVE-2002-2080Floositek FTGate PRO 1.05 allows remote attackers to cause a denial of service (memory and CPU consumption) via a large ...
CVE-2002-2081cphost.dll in Microsoft Site Server 3.0 allows remote attackers to cause a denial of service (disk consumption) via an H...
CVE-2002-2272Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a de...
CVE-2002-2364Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web s...
CVE-2002-2082FTGate and FTGate Pro 1.05 lock user mailboxes before authentication succeeds, which allows remote attackers to lock the...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now