2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-2136Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1590. Reason: This candidate is a duplicate of...
CVE-2002-2196Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to e...
CVE-2002-1926Directory traversal vulnerability in source.php in Aquonics File Manager 1.5 allows remote attackers to read arbitrary f...
CVE-2002-2135Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1618. Reason: This candidate is a duplicate of...
CVE-2002-2194Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1589. Reason: This candidate is a duplicate of...
CVE-2002-2327Unspecified vulnerability in the environmental monitoring subsystem in Solaris 8 running on Sun Fire 280R, V480 and V880...
CVE-2002-1927Aquonics File Manager 1.5 allows users with edit privileges to modify user accounts by editing the userlist.cgi file.
CVE-2002-1923The default configuration in MySQL 3.20.32 through 3.23.52, when running on Windows, does not have logging enabled, whic...
CVE-2002-1657HIGH7.5PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess p...
CVE-2002-1922Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers ...
CVE-2002-2193Cross-site scripting (XSS) vulnerability in mojo.cgi for Mojo Mail 2.7 allows remote attackers to inject arbitrary web s...
CVE-2002-1921The default configuration of MySQL 3.20.32 through 3.23.52, when running on Windows, does set the bind address to the lo...
CVE-2002-1975MEDIUM5.5Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Securi...
CVE-2002-2391SQL injection vulnerability in index.php of WebChat 1.5 included in XOOPS 1.0 allows remote attackers to execute arbitra...
CVE-2002-1928602Pro LAN SUITE 2002 allows remote attackers to view the directory tree via an HTTP GET request with a trailing "~" (ti...
CVE-2002-1919SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and...
CVE-2002-2390Buffer overflow in the IDENT daemon (identd) in Trillian 0.6351, 0.725, 0.73, 0.74 and 1.0 pro allows remote attackers t...
CVE-2002-2197Unknown vulnerability in Sun Solaris 8.0 allows local users to cause a denial of service (kernel panic) via a program th...
CVE-2002-2191Lotus Domino 5.0.9a and earlier, even when configured with the 'DominoNoBanner=1' option, allows remote attackers to obt...
CVE-2002-1917CRLF injection vulnerability in the "User Profile: Send Email" feature in Geeklog 1.35 and 1.3.5sr1 allows remote attack...
CVE-2002-2069HIGH7.5PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS file systems, which all...
CVE-2002-2423Sendmail 8.12.0 through 8.12.6 truncates log messages longer than 100 characters, which allows remote attackers to preve...
CVE-2002-1584Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and ...
CVE-2002-1363Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remo...
CVE-2002-1366Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with lp privileges to create or overwrite ar...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now