2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-2305SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands vi...
CVE-2002-1656X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the pas...
CVE-2002-1655The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause...
CVE-2002-1654iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP...
CVE-2002-1966Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read ...
CVE-2002-1736Unknown vulnerability in CGINews before 1.06 allow remote attackers to read arbitrary files via "unfiltered user input."
CVE-2002-1658Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user ar...
CVE-2002-1660calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in...
CVE-2002-2248Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attac...
CVE-2002-1664Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and po...
CVE-2002-1667The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM ob...
CVE-2002-1666Unknown vulnerability in Oracle E-Business Suite 11i.1 through 11i.6 allows remote attackers to execute unauthorized PL/...
CVE-2002-2261Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' func...
CVE-2002-1669pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow loca...
CVE-2002-1671Microsoft Internet Explorer 5.0, 5.01, and 5.5 allows remote attackers to monitor the contents of the clipboard via the ...
CVE-2002-1672Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could all...
CVE-2002-1954Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.2.3 allows remote attackers to inject arbitrar...
CVE-2002-1758PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not ver...
CVE-2002-1688The browser history feature in Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to execute arbitrary ...
CVE-2002-1686Buffer overflow in lscfg of unknown versions of AIX has unknown impact.
CVE-2002-1952phpRank 1.8 does not properly check the return codes for MySQL operations when authenticating users, which could allow r...
CVE-2002-1685Cross-site scripting vulnerability (XSS) in BadBlue Enterprise Edition and Personal Edition 1.7 and 1.7.2 allows remote ...
CVE-2002-1682MEDIUM5.5NewsReactor 1.0 uses a weak encryption scheme, which could allow local users to decrypt the passwords and gain access to...
CVE-2002-1683Cross-site scripting (XSS) vulnerability in BadBlue Personal Edition 1.7.3 allows remote attackers to execute arbitrary ...
CVE-2002-1955Iomega NAS A300U uses cleartext LANMAN authentication when mounting CIFS/SMB drives, which allows remote attackers to pe...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now