2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2002-1636Cross-site scripting (XSS) vulnerability in the htp PL/SQL package for Oracle 9i Application Server (9iAS) allows remote...
CVE-2002-1635The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl direct...
CVE-2002-1634Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso...
CVE-2002-1633Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to...
CVE-2002-1632Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var...
CVE-2002-1631SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers...
CVE-2002-1630The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.
CVE-2002-2300Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial...
CVE-2002-2378Cross-site scripting (XSS) vulnerability in AN HTTP 1.41d allows remote attackers to inject arbitrary web script or HTML...
CVE-2002-1815Directory traversal vulnerability in source.php and source.cgi in Aquonics File Manager 1.5 allows remote attackers to r...
CVE-2002-1626Directory traversal vulnerability in Mike Spice My Calendar before 1.5 allows remote attackers to write arbitrary files ...
CVE-2002-1625Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attacker...
CVE-2002-1624Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause ...
CVE-2002-1623The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, doe...
CVE-2002-1622Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "vari...
CVE-2002-1817Unknown vulnerability in Veritas Cluster Server (VCS) 1.2 for WindowsNT, Cluster Server 1.3.0 for Solaris, and Cluster S...
CVE-2002-2141BEA WebLogic Server and Express 7.0 and 7.0.0.1, when running Servlets and Enterprise JavaBeans (EJB) on more than one s...
CVE-2002-1818ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSi...
CVE-2002-2357MailEnable 1.5 015 through 1.5 018 allows remote attackers to cause a denial of service (crash) via a long USER string, ...
CVE-2002-1617Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir ar...
CVE-2002-2043SQL injection vulnerability in the LDAP and MySQL authentication patch for Cyrus SASL 1.5.24 and 1.5.27 allows remote at...
CVE-2002-1819Directory traversal vulnerability in TinyHTTPD 0.1 .0 allows remote attackers to read or execute arbitrary files via a "...
CVE-2002-2142An undocumented extension for the Servlet mappings in the Servlet 2.3 specification, when upgrading to WebLogic Server a...
CVE-2002-2301Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a wor...
CVE-2002-1821Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized acti...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now