2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-1113summary_graph_functions.php in Mantis 0.17.3 and earlier allows remote attackers to execute arbitrary PHP code by modify...
CVE-2002-1114config_inc2.php in Mantis before 0.17.4 allows remote attackers to execute arbitrary code or read arbitrary files via th...
CVE-2002-1115Mantis 0.17.4a and earlier allows remote attackers to view private bugs by modifying the f_id bug ID parameter to (1) bu...
CVE-2002-1116The "View Bugs" page (view_all_bug_page.php) in Mantis 0.17.4a and earlier includes summaries of private bugs for users ...
CVE-2002-1117Veritas Backup Exec 8.5 and earlier requires that the "RestrictAnonymous" registry key for Microsoft Exchange 2000 must ...
CVE-2002-1119os._execvpe from os.py in Python 2.2.1 and earlier creates temporary files with predictable names, which could allow loc...
CVE-2002-1135modsecurity.php 1.10 and earlier, in phpWebSite 0.8.2 and earlier, allows remote attackers to execute arbitrary PHP sour...
CVE-2002-1134Unknown vulnerability in Compaq WEBES Service Tools 2.0 through WEBES 4.0 (Service Pack 5) allows local users to read pr...
CVE-2002-1127Buffer overflow in uucp in Compaq Tru64/OSF1 3.x allows local users to execute arbitrary code via a long source (-s) com...
CVE-2002-1128Buffer overflow in inc mail utility for Compaq Tru64/OSF1 3.x allows local users to execute arbitrary code via a long MH...
CVE-2002-1129Buffer overflow in dxterm allows local users to execute arbitrary code via a long -xrm argument.
CVE-2002-1131Cross-site scripting vulnerabilities in SquirrelMail 1.2.7 and earlier allows remote attackers to execute script as othe...
CVE-2002-1132SquirrelMail 1.2.7 and earlier allows remote attackers to determine the absolute pathname of the options.php script via ...
CVE-2002-1133Encoded directory traversal vulnerability in Dino's web server 2.1 allows remote attackers to read arbitrary files via "...
CVE-2002-1040Unknown vulnerability in the WebSecure (DFSWeb) configuration utilities in AIX 4.x, possibly related to relative pathnam...
CVE-2002-1642PostgreSQL 7.2.1 and 7.2.2 allows local users to delete transaction log (pg_clog) data and cause a denial of service (da...
CVE-2002-1593mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a ch...
CVE-2002-0727The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as saf...
CVE-2002-0724Buffer overflow in SMB (Server Message Block) protocol in Microsoft Windows NT, Windows 2000, and Windows XP allows atta...
CVE-2002-0723Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which al...
CVE-2002-0726Buffer overflow in Microsoft Terminal Services Advanced Client (TSAC) ActiveX control allows remote attackers to execute...
CVE-2002-0647Buffer overflow in a legacy ActiveX control used to display specially formatted text in Microsoft Internet Explorer 5.01...
CVE-2002-0861Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to bypass the "Allow paste operations via sc...
CVE-2002-0376Buffer overflow in Apple QuickTime 5.0 ActiveX component allows remote attackers to execute arbitrary code via a long pl...
CVE-2002-0982Microsoft SQL Server 2000 SP2, when configured as a distributor, allows attackers to execute arbitrary code via the @scr...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now