2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2002-2188OpenBSD before 3.2 allows local users to cause a denial of service (kernel crash) via a call to getrlimit(2) with invali...
CVE-2002-2255Cross-site scripting (XSS) vulnerability in search.php in phpBB 2.0.3 and possibly earlier versions allows remote attack...
CVE-2002-1617Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir ar...
CVE-2002-2340Cross-site scripting (XSS) vulnerability in read.php in Phorum 3.3.2a allows remote attackers to inject arbitrary web sc...
CVE-2002-2341Cross-site scripting (XSS) vulnerability in content blocking in SonicWALL SOHO3 6.3.0.0 allows remote attackers to injec...
CVE-2002-1963Linux kernel 2.4.1 through 2.4.19 sets root's NR_RESERVED_FILES limit to 10 files, which allows local users to cause a d...
CVE-2002-1573Unspecified vulnerability in the pcilynx ieee1394 firewire driver (pcilynx.c) in Linux kernel before 2.4.20 has unknown ...
CVE-2002-1689Unknown vulnerability in the login program on AIX before 4.0 could allow remote users to specify 100 or more environment...
CVE-2002-2349phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environme...
CVE-2002-1965Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to injec...
CVE-2002-1624Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause ...
CVE-2002-1623The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, doe...
CVE-2002-1653Farm9 Cryptcat, when started in server mode with the -e option, does not enable encryption, which allows clients to comm...
CVE-2002-1979WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote at...
CVE-2002-1625Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attacker...
CVE-2002-1627Directory traversal vulnerability in quiz.cgi for Mike Spice Quiz Me! before 0.6 allows remote attackers to write arbitr...
CVE-2002-1628Directory traversal vulnerability in vote.cgi for Mike Spice Mike's Vote CGI before 1.3 allows remote attackers to write...
CVE-2002-1962Finjan Software SurfinGate 6.0 and 6.0 1 allows remote attackers to bypass URL access restrictions via a URL with an IP ...
CVE-2002-1632Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var...
CVE-2002-1635The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl direct...
CVE-2002-1634Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso...
CVE-2002-2306Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sen...
CVE-2002-1646SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration...
CVE-2002-1648Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail before 1.2.3 allows remote attackers to s...
CVE-2002-1966Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read ...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now