2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2002-1913phptonuke.php in myPHPNuke 1.8.8 allows remote attackers to read arbitrary files via a full pathname in the filnavn vari...
CVE-2002-1916Pirch and RusPirch, when auto-log is enabled, allows remote attackers to cause a denial of service (crash) via a nicknam...
CVE-2002-2190ArtsCore Studios CuteCast Forum 1.2 stores passwords in plaintext under the web document root, which allows remote attac...
CVE-2002-2324The "System Restore" directory and subdirectories, and possibly other subdirectories in the "System Volume Information" ...
CVE-2002-1917CRLF injection vulnerability in the "User Profile: Send Email" feature in Geeklog 1.35 and 1.3.5sr1 allows remote attack...
CVE-2002-1918Buffer overflow in Microsoft Active Data Objects (ADO) in Microsoft MDAC 2.5 through 2.7 allows remote attackers to have...
CVE-2002-2191Lotus Domino 5.0.9a and earlier, even when configured with the 'DominoNoBanner=1' option, allows remote attackers to obt...
CVE-2002-1919SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and...
CVE-2002-1920Buffer overflow in FtpXQ 2.5 allows remote attackers to cause a denial of service (crash) via a MKD command with a long ...
CVE-2002-2192Cross-site scripting (XSS) vulnerability in Perception LiteServe 2.0.1 allows remote attackers to execute arbitrary web ...
CVE-2002-2325The c-client library in Internet Message Access Protocol (IMAP) dated before 2002 RC2, as used by Pine 4.20 through 4.44...
CVE-2002-2390Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers t...
CVE-2002-1921The default configuration of MySQL 3.20.32 through 3.23.52, when running on Windows, does set the bind address to the lo...
CVE-2002-1922Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers ...
CVE-2002-2193Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web s...
CVE-2002-1923The default configuration in MySQL 3.20.32 through 3.23.52, when running on Windows, does not have logging enabled, whic...
CVE-2002-1924PowerChute plus 5.0.2 creates a "Pwrchute" directory during installation that is shared and world writeable, which could...
CVE-2002-2195Buffer overflow in the version update check for Winamp 2.80 and earlier allows remote attackers who can spoof www.winamp...
CVE-2002-2331W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restr...
CVE-2002-2326The default configuration of Mail.app in Mac OS X 10.0 through 10.0.4 and 10.1 through 10.1.5 sends iDisk authentication...
CVE-2002-2204The default --checksig setting in RPM Package Manager 4.0.4 checks that a package's signature is valid without listing w...
CVE-2002-1925Tiny Personal Firewall 3.0 through 3.0.6 allows remote attackers to cause a denial of service (crash) by via SYN, UDP, I...
CVE-2002-1926Directory traversal vulnerability in source.php in Aquonics File Manager 1.5 allows remote attackers to read arbitrary f...
CVE-2002-2196Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to e...
CVE-2002-1927Aquonics File Manager 1.5 allows users with edit privileges to modify user accounts by editing the userlist.cgi file.

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now