2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1245Maped in LuxMan 0.41 uses the user-provided search path to find and execute the gzip program, which allows local users t...
CVE-2002-1248Northern Solutions Xeneo Web Server 2.1.0.0, 2.0.759.6, and other versions before 2.1.5 allows remote attackers to cause...
CVE-2002-1238Peter Sandvik's Simple Web Server 0.5.1 and earlier allows remote attackers to bypass access restrictions for files via ...
CVE-2002-1239QNX Neutrino RTOS 6.2.0 uses the PATH environment variable to find and execute the cp program while operating at raised ...
CVE-2002-1242SQL injection vulnerability in PHP-Nuke before 6.0 allows remote authenticated users to modify the database and gain pri...
CVE-2002-1244Format string vulnerability in Pablo FTP Server 1.5, 1.3, and possibly other versions, allows remote attackers to cause ...
CVE-2002-1251Buffer overflow in log2mail before 0.2.5.1 allows remote attackers to execute arbitrary code via a long log message.
CVE-2002-1253Abuse 2.00 and earlier allows local users to gain privileges via command line arguments that specify alternate Lisp scri...
CVE-2002-1264Buffer overflow in Oracle iSQL*Plus web application of the Oracle 9 database server allows remote attackers to execute a...
CVE-2002-1265The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from ...
CVE-2002-1271The Mail::Mailer Perl module in the perl-MailTools package 1.47 and earlier uses mailx as the default mailer, which allo...
CVE-2002-1275Unknown vulnerability in html2ps HTML/PostScript converter 1.0, when used within LPRng, allows remote attackers to execu...
CVE-2002-1277Buffer overflow in Window Maker (wmaker) 0.80.0 and earlier may allow remote attackers to execute arbitrary code via a c...
CVE-2002-1278The mailconf module in Linuxconf 1.24, and other versions before 1.28, on Conectiva Linux 6.0 through 8, and possibly ot...
CVE-2002-1585Unknown vulnerability in Solaris 8 for Intel and Solaris 8 and 9 for SPARC allows remote attackers to cause a denial of ...
CVE-2002-1167Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all...
CVE-2002-0666IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, ...
CVE-2002-1234Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0180. Reason: This candidate is a an out-of-ba...
CVE-2002-0386The administration module for Oracle Web Cache in Oracle9iAS (9i Application Suite) 9.0.2 allows remote attackers to cau...
CVE-2002-1168Cross-site scripting (XSS) vulnerability in IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 all...
CVE-2002-1157Cross-site scripting vulnerability in the mod_ssl Apache module 2.8.9 and earlier, when UseCanonicalName is off and wild...
CVE-2002-1169IBM Web Traffic Express Caching Proxy Server 3.6 and 4.x before 4.0.1.26 allows remote attackers to cause a denial of se...
CVE-2002-1209Directory traversal vulnerability in SolarWinds TFTP Server 5.0.55, and possibly earlier, allows remote attackers to rea...
CVE-2002-1230NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute ...
CVE-2002-1231SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to cause a denial of service via an rcp call on /proc.

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now