2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-2141BEA WebLogic Server and Express 7.0 and 7.0.0.1, when running Servlets and Enterprise JavaBeans (EJB) on more than one s...
CVE-2002-1818ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSi...
CVE-2002-1819Directory traversal vulnerability in TinyHTTPD 0.1 .0 allows remote attackers to read or execute arbitrary files via a "...
CVE-2002-2142An undocumented extension for the Servlet mappings in the Servlet 2.3 specification, when upgrading to WebLogic Server a...
CVE-2002-2301Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a wor...
CVE-2002-1571The linux 2.4 kernel before 2.4.19 assumes that the fninit instruction clears all registers, which could lead to an info...
CVE-2002-1821Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized acti...
CVE-2002-1822IBM HTTP Server 1.0 on AS/400 allows remote attackers to obtain the path to the web root directory and other sensitive i...
CVE-2002-2143The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers ...
CVE-2002-1823Buffer overflow in the HttpGetRequest function in Zeroo HTTP server 1.5 allows remote attackers to execute arbitrary cod...
CVE-2002-1824Microsoft Internet Explorer 6.0, when handling an expired CA-CERT in a webserver's certificate chain during a SSL/TLS ha...
CVE-2002-2144Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read files outside of the web ...
CVE-2002-23023D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying th...
CVE-2002-2379Cisco AS5350 IOS 12.2(11)T with access control lists (ACLs) applied and possibly with ssh running allows remote attacker...
CVE-2002-2417acFTP 1.4 does not properly handle when an invalid password is provided by the user during authentication, which allows ...
CVE-2002-1825Format string vulnerability in PerlRTE_example1.pl in WASD 7.1, 7.2.0 through 7.2.3, and 8.0.0 allows remote attackers t...
CVE-2002-1826grsecurity 1.9.4 for Linux kernel 2.4.18 allows local users to bypass read-only permissions by using mmap to directly ma...
CVE-2002-2404Buffer overflow in IISPop email server 1.161 and 1.181 allows remote attackers to cause a denial of service (crash) via ...
CVE-2002-2145Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders v...
CVE-2002-1827Sendmail 8.9.0 through 8.12.3 allows local users to cause a denial of service by obtaining an exclusive lock on the (1) ...
CVE-2002-1828Savant Webserver 3.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request with a negativ...
CVE-2002-2146cgitest.exe in Savant Web Server 3.1 and earlier allows remote attackers to cause a denial of service (crash) via a long...
CVE-2002-23033D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attacke...
CVE-2002-1829Cross-site scripting (XSS) vulnerability in codeparse.php in Open Bulletin Board (OpenBB) 1.0.0 RC3 allows remote attack...
CVE-2002-1830Open Bulletin Board (OpenBB) 1.0.0 RC3 allows remote attackers to bypass authentication and access modifier options via ...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now