2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-0481An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security se...
CVE-2002-0524ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-in...
CVE-2002-0523ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.
CVE-2002-0526Vulnerability in (1) inews or (2) rnews for INN 2.2.3 and earlier, related to insecure open() calls.
CVE-2002-0498Etnus TotalView 5.0.0-4 installs certain files with UID 5039 and GID 59, which could allow local users with that UID or ...
CVE-2002-0638setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does no...
CVE-2002-0527Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO...
CVE-2002-0497Buffer overflow in mtr 0.46 and earlier, when installed setuid root, allows local users to access a raw socket via a lon...
CVE-2002-0522ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" ...
CVE-2002-0649Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD...
CVE-2002-0500Internet Explorer 5.0 through 6.0 allows remote attackers to determine the existence of files on the client via an IMG t...
CVE-2002-0644Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Eng...
CVE-2002-0645SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 ...
CVE-2002-0499The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generat...
CVE-2002-0496The HTTP server for SouthWest Talker server 1.0.0 allows remote attackers to cause a denial of service (server crash) vi...
CVE-2002-0650The keep-alive mechanism for Microsoft SQL Server 2000 allows remote attackers to cause a denial of service (bandwidth c...
CVE-2002-0655OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, does not properly handle ASCII representations of integers on 6...
CVE-2002-0659The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o...
CVE-2002-0656Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary...
CVE-2002-0657Buffer overflow in OpenSSL 0.9.7 before 0.9.7-beta3, with Kerberos enabled, allows attackers to execute arbitrary code v...
CVE-2002-0658OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a...
CVE-2002-0617The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creatin...
CVE-2002-0619The Mail Merge Tool in Microsoft Word 2002 for Windows, when Microsoft Access is present on a system, allows remote atta...
CVE-2002-0660Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating sy...
CVE-2002-0661Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to r...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now