2002 CVE Vulnerabilities
2,393 CVEs published in 2002.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2002-1636 | — | — | 1.6% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in the htp PL/SQL package for Oracle 9i Application Server (9iAS) allows remote... |
| CVE-2002-1635 | — | — | 4.4% | Dec 31, 2002 | The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl direct... |
| CVE-2002-1634 | — | — | 17.0% | Dec 31, 2002 | Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso... |
| CVE-2002-1633 | — | — | 0.6% | Dec 31, 2002 | Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to... |
| CVE-2002-1632 | — | — | 5.4% | Dec 31, 2002 | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var... |
| CVE-2002-1631 | — | — | 7.7% | Dec 31, 2002 | SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers... |
| CVE-2002-1630 | — | — | 7.1% | Dec 31, 2002 | The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails. |
| CVE-2002-2299 | — | — | 1.3% | Dec 31, 2002 | PHP remote file inclusion vulnerability in thatfile.php in Thatware 0.3 through 0.5.2 allows remote attackers to execute... |
| CVE-2002-1809 | — | — | 16.1% | Dec 31, 2002 | The default configuration of the Windows binary release of MySQL 3.23.2 through 3.23.52 has a NULL root password, which ... |
| CVE-2002-1811 | — | — | 7.2% | Dec 31, 2002 | Belkin F5D6130 Wireless Network Access Point running firmware AP14G8 allows remote attackers to cause a denial of servic... |
| CVE-2002-1626 | — | — | 2.0% | Dec 31, 2002 | Directory traversal vulnerability in Mike Spice My Calendar before 1.5 allows remote attackers to write arbitrary files ... |
| CVE-2002-1625 | — | — | 2.0% | Dec 31, 2002 | Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attacker... |
| CVE-2002-1624 | — | — | 4.1% | Dec 31, 2002 | Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause ... |
| CVE-2002-1623 | — | — | 48.6% | Dec 31, 2002 | The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, doe... |
| CVE-2002-1622 | — | — | 3.0% | Dec 31, 2002 | Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "vari... |
| CVE-2002-2139 | — | — | 1.1% | Dec 31, 2002 | Cisco PIX Firewall 6.0.3 and earlier, and 6.1.x to 6.1.3, do not delete the duplicate ISAKMP SAs for a user's VPN sessio... |
| CVE-2002-1812 | — | — | 1.1% | Dec 31, 2002 | Buffer overflow in gdam123 0.933 and 0.942 allows local users to execute arbitrary code via a long filename parameter. |
| CVE-2002-1813 | — | — | 6.9% | Dec 31, 2002 | Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8.2790 allows remote attackers to execute arbitrary p... |
| CVE-2002-2357 | — | — | 3.0% | Dec 31, 2002 | MailEnable 1.5 015 through 1.5 018 allows remote attackers to cause a denial of service (crash) via a long USER string, ... |
| CVE-2002-1617 | — | — | 1.5% | Dec 31, 2002 | Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir ar... |
| CVE-2002-2043 | — | — | 1.3% | Dec 31, 2002 | SQL injection vulnerability in the LDAP and MySQL authentication patch for Cyrus SASL 1.5.24 and 1.5.27 allows remote at... |
| CVE-2002-2140 | — | — | 2.0% | Dec 31, 2002 | Buffer overflow in Cisco PIX Firewall 5.2.x to 5.2.8, 6.0.x to 6.0.3, 6.1.x to 6.1.3, and 6.2.x to 6.2.1 allows remote a... |
| CVE-2002-2300 | — | — | 5.0% | Dec 31, 2002 | Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial... |
| CVE-2002-2378 | — | — | 1.0% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in AN HTTP 1.41d allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2002-1815 | — | — | 1.7% | Dec 31, 2002 | Directory traversal vulnerability in source.php and source.cgi in Aquonics File Manager 1.5 allows remote attackers to r... |
Check if your code is affected by 2002 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now