2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-0638setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does no...
CVE-2002-0505Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3....
CVE-2002-0420Vulnerability in PureTLS before 0.9b2 related to injection attacks, which could possibly allow remote attackers to corru...
CVE-2002-0484move_uploaded_file in PHP does not does not check for the base directory (open_basedir), which could allow remote attack...
CVE-2002-0509Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (...
CVE-2002-0470PHPNetToolpack 0.1 relies on its environment's PATH to find and execute the traceroute program, which could allow local ...
CVE-2002-0649Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSD...
CVE-2002-0480ISS RealSecure for Nokia devices before IPSO build 6.0.2001.141d is configured to allow a user "skank" on a machine "sta...
CVE-2002-0423Buffer overflow in efingerd 1.5 and earlier, and possibly up to 1.61, allows remote attackers to cause a denial of servi...
CVE-2002-0644Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Eng...
CVE-2002-0645SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 ...
CVE-2002-0476Standalone Macromedia Flash Player 5.0 allows remote attackers to save arbitrary files and programs via a .SWF file cont...
CVE-2002-0422IIS 5 and 5.1 supporting WebDAV methods allows remote attackers to determine the internal IP address of the system (whic...
CVE-2002-0419Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily...
CVE-2002-0650The keep-alive mechanism for Microsoft SQL Server 2000 allows remote attackers to cause a denial of service (bandwidth c...
CVE-2002-0655OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, does not properly handle ASCII representations of integers on 6...
CVE-2002-0659The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o...
CVE-2002-0656Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary...
CVE-2002-0657Buffer overflow in OpenSSL 0.9.7 before 0.9.7-beta3, with Kerberos enabled, allows attackers to execute arbitrary code v...
CVE-2002-0530Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as oth...
CVE-2002-0658OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a...
CVE-2002-0532EMU Webmail allows local users to execute arbitrary programs via a .. (dot dot) in the HTTP Host header that points to a...
CVE-2002-0660Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating sy...
CVE-2002-0526Vulnerability in (1) inews or (2) rnews for INN 2.2.3 and earlier, related to insecure open() calls.
CVE-2002-0661Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to r...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now