2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

CVE IDSeverityCVSSDescription
CVE-2002-0645SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 ...
CVE-2002-0423Buffer overflow in efingerd 1.5 and earlier, and possibly up to 1.61, allows remote attackers to cause a denial of servi...
CVE-2002-0500Internet Explorer 5.0 through 6.0 allows remote attackers to determine the existence of files on the client via an IMG t...
CVE-2002-0420Vulnerability in PureTLS before 0.9b2 related to injection attacks, which could possibly allow remote attackers to corru...
CVE-2002-0650The keep-alive mechanism for Microsoft SQL Server 2000 allows remote attackers to cause a denial of service (bandwidth c...
CVE-2002-0655OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, does not properly handle ASCII representations of integers on 6...
CVE-2002-0659The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial o...
CVE-2002-0656Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary...
CVE-2002-0657Buffer overflow in OpenSSL 0.9.7 before 0.9.7-beta3, with Kerberos enabled, allows attackers to execute arbitrary code v...
CVE-2002-0658OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a...
CVE-2002-0464Directory traversal vulnerability in Hosting Controller 1.4.1 and earlier allows remote attackers to read and modify arb...
CVE-2002-0510The UDP implementation in Linux 2.4.x kernels keeps the IP Identification field at 0 for all non-fragmented packets, whi...
CVE-2002-0660Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating sy...
CVE-2002-0661Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to r...
CVE-2002-0460Bitvise WinSSHD before 2002-03-16 allows remote attackers to cause a denial of service (resource exhaustion) via a large...
CVE-2002-0419Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily...
CVE-2002-0479Gravity Storm Service Pack Manager 2000 creates a hidden share (SPM2000c$) mapped to the C drive, which may allow local ...
CVE-2002-0418Directory traversal vulnerability in the com.endymion.sake.servlet.mail.MailServlet servlet for Endymion SakeMail 1.0.36...
CVE-2002-0456Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for atta...
CVE-2002-0391CRITICAL9.8Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on...
CVE-2002-0430MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authenticatio...
CVE-2002-0429The iBCS routines in arch/i386/kernel/traps.c for Linux kernels 2.4.18 and earlier on x86 systems allow local users to k...
CVE-2002-0492dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the data...
CVE-2002-0428Check Point FireWall-1 SecuRemote/SecuClient 4.0 and 4.1 allows clients to bypass the "authentication timeout" by modify...
CVE-2002-0413Cross-site scripting vulnerability in ReBB allows remote attackers to execute arbitrary Javascript and steal cookies via...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now