2002 CVE Vulnerabilities
2,393 CVEs published in 2002.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2002-2305 | — | — | 1.0% | Dec 31, 2002 | SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2002-1656 | — | — | 3.9% | Dec 31, 2002 | X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the pas... |
| CVE-2002-1655 | — | — | 2.3% | Dec 31, 2002 | The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause... |
| CVE-2002-1654 | — | — | 2.6% | Dec 31, 2002 | iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP... |
| CVE-2002-1966 | — | — | 3.1% | Dec 31, 2002 | Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read ... |
| CVE-2002-1736 | — | — | 1.2% | Dec 31, 2002 | Unknown vulnerability in CGINews before 1.06 allow remote attackers to read arbitrary files via "unfiltered user input." |
| CVE-2002-1658 | — | — | 1.1% | Dec 31, 2002 | Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user ar... |
| CVE-2002-1660 | — | — | 11.1% | Dec 31, 2002 | calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in... |
| CVE-2002-2248 | — | — | 5.8% | Dec 31, 2002 | Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attac... |
| CVE-2002-1664 | — | — | 3.2% | Dec 31, 2002 | Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and po... |
| CVE-2002-1667 | — | — | 0.3% | Dec 31, 2002 | The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM ob... |
| CVE-2002-1666 | — | — | 2.2% | Dec 31, 2002 | Unknown vulnerability in Oracle E-Business Suite 11i.1 through 11i.6 allows remote attackers to execute unauthorized PL/... |
| CVE-2002-2261 | — | — | 2.0% | Dec 31, 2002 | Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' func... |
| CVE-2002-1669 | — | — | 0.3% | Dec 31, 2002 | pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow loca... |
| CVE-2002-1671 | — | — | 12.1% | Dec 31, 2002 | Microsoft Internet Explorer 5.0, 5.01, and 5.5 allows remote attackers to monitor the contents of the clipboard via the ... |
| CVE-2002-1672 | — | — | 0.4% | Dec 31, 2002 | Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could all... |
| CVE-2002-1954 | — | — | 11.9% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.2.3 allows remote attackers to inject arbitrar... |
| CVE-2002-1758 | — | — | 2.1% | Dec 31, 2002 | PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not ver... |
| CVE-2002-1688 | — | — | 17.5% | Dec 31, 2002 | The browser history feature in Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to execute arbitrary ... |
| CVE-2002-1686 | — | — | 1.4% | Dec 31, 2002 | Buffer overflow in lscfg of unknown versions of AIX has unknown impact. |
| CVE-2002-1952 | — | — | 1.6% | Dec 31, 2002 | phpRank 1.8 does not properly check the return codes for MySQL operations when authenticating users, which could allow r... |
| CVE-2002-1685 | — | — | 7.3% | Dec 31, 2002 | Cross-site scripting vulnerability (XSS) in BadBlue Enterprise Edition and Personal Edition 1.7 and 1.7.2 allows remote ... |
| CVE-2002-1682 | MEDIUM | 5.5 | 0.2% | Dec 31, 2002 | NewsReactor 1.0 uses a weak encryption scheme, which could allow local users to decrypt the passwords and gain access to... |
| CVE-2002-1683 | — | — | 1.7% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in BadBlue Personal Edition 1.7.3 allows remote attackers to execute arbitrary ... |
| CVE-2002-1955 | — | — | 1.3% | Dec 31, 2002 | Iomega NAS A300U uses cleartext LANMAN authentication when mounting CIFS/SMB drives, which allows remote attackers to pe... |
Check if your code is affected by 2002 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now