2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1720SQL injection vulnerability in Spooky Login 2.0 through 2.5 allows remote attackers to bypass authentication and gain pr...
CVE-2002-1719Unknown vulnerability in Bavo 0.3 allows remote attackers to modify posted messages.
CVE-2002-2134haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to refere...
CVE-2002-1717Microsoft Internet Information Server (IIS) 5.1 allows remote attackers to view path information via a GET request to (1...
CVE-2002-1716The Host() function in the Microsoft spreadsheet component on Microsoft Office XP allows remote attackers to create arbi...
CVE-2002-1715SSH 1 through 3, and possibly other versions, allows local users to bypass restricted shells such as rbash or rksh by up...
CVE-2002-1714Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to cause a denial of service (crash) via an object o...
CVE-2002-1712Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of e...
CVE-2002-1711BasiliX 1.1.0 saves attachments in a world readable /tmp/BasiliX directory, which allows local users to read other users...
CVE-2002-1710The attachment capability in Compose Mail in BasiliX Webmail 1.1.0 does not check whether the attachment was uploaded by...
CVE-2002-1709SQL injection vulnerability in BasiliX Webmail 1.10 allows remote attackers to obtain sensitive information or possibly ...
CVE-2002-1708Cross-site scripting vulnerability (XSS) in BasiliX Webmail 1.10 allows remote attackers to execute arbitrary script as ...
CVE-2002-1707install.php in phpBB 2.0 through 2.0.1, when "allow_url_fopen" and "register_globals" variables are set to "on", allows ...
CVE-2002-1705Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to cause a denial of service (crash) via a Cascading...
CVE-2002-1704Zeroboard 4.1, when the "allow_url_fopen" and "register_globals" variables are enabled, allows remote attackers to execu...
CVE-2002-1703Cross-site scripting vulnerability (XSS) in auction.cgi for Mewsoft NetAuction 3.0 allows remote attackers to execute ar...
CVE-2002-1702Cross-site scripting vulnerability (XSS) in DeltaScripts PHP Classifieds 6.0.5 allows remote attackers to execute arbitr...
CVE-2002-1700Cross-site scripting vulnerability (XSS) in the missing template handler in Macromedia ColdFusion MX allows remote attac...
CVE-2002-2298PHP remote file inclusion vulnerability in config.php in Thatware 0.3 through 0.5.3 allows remote attackers to execute a...
CVE-2002-1698Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service ...
CVE-2002-1695Norton Internet Security 2001 opens log files with FILE_SHARE_READ and FILE_SHARE_WRITE permissions, which could allow r...
CVE-2002-1694Microsoft Internet Information Server (IIS) 4.0 opens log files with FILE_SHARE_READ and FILE_SHARE_WRITE permissions, w...
CVE-2002-1692Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filena...
CVE-2002-1691Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remot...
CVE-2002-2377Cross-site scripting (XSS) vulnerability in addentry.cgi in ZAP 1.0.3 allows remote attackers to inject arbitrary SSi di...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now