2002 CVE Vulnerabilities
2,393 CVEs published in 2002.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2002-1636 | — | — | 1.6% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in the htp PL/SQL package for Oracle 9i Application Server (9iAS) allows remote... |
| CVE-2002-1635 | — | — | 4.4% | Dec 31, 2002 | The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl direct... |
| CVE-2002-1634 | — | — | 17.0% | Dec 31, 2002 | Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndso... |
| CVE-2002-1633 | — | — | 0.6% | Dec 31, 2002 | Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to... |
| CVE-2002-1632 | — | — | 5.4% | Dec 31, 2002 | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment var... |
| CVE-2002-1631 | — | — | 7.7% | Dec 31, 2002 | SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers... |
| CVE-2002-1630 | — | — | 7.1% | Dec 31, 2002 | The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails. |
| CVE-2002-2300 | — | — | 5.0% | Dec 31, 2002 | Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial... |
| CVE-2002-2378 | — | — | 1.0% | Dec 31, 2002 | Cross-site scripting (XSS) vulnerability in AN HTTP 1.41d allows remote attackers to inject arbitrary web script or HTML... |
| CVE-2002-1815 | — | — | 1.7% | Dec 31, 2002 | Directory traversal vulnerability in source.php and source.cgi in Aquonics File Manager 1.5 allows remote attackers to r... |
| CVE-2002-1626 | — | — | 2.0% | Dec 31, 2002 | Directory traversal vulnerability in Mike Spice My Calendar before 1.5 allows remote attackers to write arbitrary files ... |
| CVE-2002-1625 | — | — | 2.0% | Dec 31, 2002 | Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attacker... |
| CVE-2002-1624 | — | — | 4.1% | Dec 31, 2002 | Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause ... |
| CVE-2002-1623 | — | — | 48.6% | Dec 31, 2002 | The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, doe... |
| CVE-2002-1622 | — | — | 3.0% | Dec 31, 2002 | Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "vari... |
| CVE-2002-1817 | — | — | 1.3% | Dec 31, 2002 | Unknown vulnerability in Veritas Cluster Server (VCS) 1.2 for WindowsNT, Cluster Server 1.3.0 for Solaris, and Cluster S... |
| CVE-2002-2141 | — | — | 2.4% | Dec 31, 2002 | BEA WebLogic Server and Express 7.0 and 7.0.0.1, when running Servlets and Enterprise JavaBeans (EJB) on more than one s... |
| CVE-2002-1818 | — | — | 6.8% | Dec 31, 2002 | ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSi... |
| CVE-2002-2357 | — | — | 3.0% | Dec 31, 2002 | MailEnable 1.5 015 through 1.5 018 allows remote attackers to cause a denial of service (crash) via a long USER string, ... |
| CVE-2002-1617 | — | — | 1.5% | Dec 31, 2002 | Multiple buffer overflows in HP Tru64 UNIX 5.x allow local users to execute arbitrary code via (1) a long -contextDir ar... |
| CVE-2002-2043 | — | — | 1.3% | Dec 31, 2002 | SQL injection vulnerability in the LDAP and MySQL authentication patch for Cyrus SASL 1.5.24 and 1.5.27 allows remote at... |
| CVE-2002-1819 | — | — | 1.8% | Dec 31, 2002 | Directory traversal vulnerability in TinyHTTPD 0.1 .0 allows remote attackers to read or execute arbitrary files via a "... |
| CVE-2002-2142 | — | — | 1.3% | Dec 31, 2002 | An undocumented extension for the Servlet mappings in the Servlet 2.3 specification, when upgrading to WebLogic Server a... |
| CVE-2002-2301 | — | — | 0.3% | Dec 31, 2002 | Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a wor... |
| CVE-2002-1821 | — | — | 0.7% | Dec 31, 2002 | Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized acti... |
Check if your code is affected by 2002 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now