2002 CVE Vulnerabilities

2,393 CVEs published in 2002.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2002-20001HIGH7.5The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that ...
CVE-2002-2438HIGH7.5TCP firewalls could be circumvented by sending a SYN Packets with other flags (like e.g. RST flag) set, which was not co...
CVE-2002-2439HIGH7.8Integer overflow in the new[] operator in gcc before 4.8.0 allows attackers to have unspecified impacts.
CVE-2002-0628HIGH7.5The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which mak...
CVE-2002-1721HIGH7.5Off-by-one error in alterMIME 0.1.10 and 0.1.11 allows remote attackers to cause a denial of service (crash) via an x-he...
CVE-2002-1910HIGH7.5Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), w...
CVE-2002-1912HIGH7.5SkyStream EMR5000 1.16 through 1.18 does not drop packets or disable the Ethernet interface when the buffers are full, w...
CVE-2002-1949HIGH7.5The Network Attached Storage (NAS) Administration Web Page for Iomega NAS A300U transmits passwords in cleartext, which ...
CVE-2002-2058HIGH7.5TeeKai Tracking Online 1.0 uses weak encryption of web usage statistics in data/userlog/log.txt, which allows remote att...
CVE-2002-2066HIGH7.5BestCrypt BCWipe 1.0.7 and 2.0 through 2.35.1 does not clear Windows alternate data streams that are attached to files o...
CVE-2002-2067HIGH7.5East-Tec Eraser 2002 does not clear Windows alternate data streams that are attached to files on NTFS file systems, whic...
CVE-2002-2068HIGH7.5Eraser 5.3 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows a...
CVE-2002-2069HIGH7.5PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS file systems, which all...
CVE-2002-2070HIGH7.5SecureClean 3 build 2.0 does not clear Windows alternate data streams that are attached to files on NTFS file systems, w...
CVE-2002-2323HIGH7.5Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use sy...
CVE-2002-1657HIGH7.5PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess p...
CVE-2002-1697HIGH7.5Electronic Code Book (ECB) mode in VTun 2.0 through 2.5 uses a weak encryption algorithm that produces the same cipherte...
CVE-2002-1706HIGH7.5Cisco IOS software 11.3 through 12.2 running on Cisco uBR7200 and uBR7100 series Universal Broadband Routers allows remo...
CVE-2002-1745HIGH7.5Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers to view the source code ...
CVE-2002-1796HIGH7.8ChaiVM EZloader for HP color LaserJet 4500 and 4550 and HP LaserJet 4100 and 8150 does not properly verify JAR signature...
CVE-2002-1800HIGH7.5phpRank 1.8 stores the administrative password in plaintext on the server and in the "ap" cookie, which allows remote at...
CVE-2002-1810HIGH7.5D-Link DWL-900AP+ Access Point 2.1 and 2.2 allows remote attackers to access the TFTP server without authentication and ...
CVE-2002-1844HIGH7.8Microsoft Windows Media Player (WMP) 6.3, when installed on Solaris, installs executables with world-writable permission...
CVE-2002-1850HIGH7.5mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang ...
CVE-2002-1872HIGH7.5Microsoft SQL Server 6.0 through 2000, with SQL Authentication enabled, uses weak password encryption (XOR), which allow...

Check if your code is affected by 2002 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now