2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-2127Integrity Protection Driver (IPD) 1.2 and earlier blocks access to \Device\PhysicalMemory by its name, which could allow...
CVE-2002-2305SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands vi...
CVE-2002-2008Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource t...
CVE-2002-2132Windows File Protection (WFP) in Windows 2000 and XP does not remove old security catalog .CAT files, which could allow ...
CVE-2002-2138RFC-NETBIOS in HP Advanced Server/9000 B.04.05 through B.04.09, when running HP-UX 11.00 or 11.11, allows remote attacke...
CVE-2002-1936UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to ...
CVE-2002-2135Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1618. Reason: This candidate is a duplicate of...
CVE-2002-2134haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to refere...
CVE-2002-2284Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code vi...
CVE-2002-2203Unknown vulnerability in the System Serial Console terminal in Solaris 2.5.1, 2.6, and 7 allows local users to monitor k...
CVE-2002-1690Unknown vulnerability in AIX before 4.0 with unknown attack vectors and unknown impact, aka "security issue," as fixed b...
CVE-2002-2016User-mode Linux (UML) 2.4.17-8 does not restrict access to kernel address space, which allows local users to execute arb...
CVE-2002-2012Unknown vulnerability in Apache 1.3.19 running on HP Secure OS for Linux 1.0 allows remote attackers to cause "unexpecte...
CVE-2002-2206The POP3 proxy service (POPROXY.EXE) in Norton AntiVirus 2001 allows local users to cause a denial of service (CPU consu...
CVE-2002-2141BEA WebLogic Server and Express 7.0 and 7.0.0.1, when running Servlets and Enterprise JavaBeans (EJB) on more than one s...
CVE-2002-2142An undocumented extension for the Servlet mappings in the Servlet 2.3 specification, when upgrading to WebLogic Server a...
CVE-2002-2143The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers ...
CVE-2002-1923The default configuration in MySQL 3.20.32 through 3.23.52, when running on Windows, does not have logging enabled, whic...
CVE-2002-1617Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir ar...
CVE-2002-2297PHP remote file inclusion vulnerability in artlist.php in Thatware 0.5.2 and 0.5.3 allows remote attackers to execute ar...
CVE-2002-23023D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying th...
CVE-2002-1924PowerChute plus 5.0.2 creates a "Pwrchute" directory during installation that is shared and world writeable, which could...
CVE-2002-1689Unknown vulnerability in the login program on AIX before 4.0 could allow remote users to specify 100 or more environment...
CVE-2002-2307The default configuration of BenHur Firewall release 3 update 066 fix 2 allows remote attackers to access arbitrary serv...
CVE-2002-1922Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers ...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now