| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2002-0796 | 0.00 | — | 0.04 | Aug 12, 2002 | Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges. | |||
| CVE-2002-0797 | 0.00 | — | 0.03 | Aug 12, 2002 | Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges. | |||
| CVE-2002-0798 | 0.00 | — | 0.01 | Aug 12, 2002 | Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service. | |||
| CVE-2002-0799 | 0.04 | — | 0.14 | Aug 12, 2002 | Buffer overflow in YoungZSoft CMailServer 3.30 allows remote attackers to execute arbitrary code via a long USER argument. | |||
| CVE-2002-0800 | 0.00 | — | 0.02 | Aug 12, 2002 | BadBlue 1.7.0 allows remote attackers to list the contents of directories via a URL with an encoded '%' character at the end. | |||
| CVE-2002-0801 | 0.01 | — | 0.09 | Aug 12, 2002 | Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to the filter with a long HTTP host header field in a URL for a .jsp file. | |||
| CVE-2002-0802 | 0.00 | — | 0.01 | Aug 12, 2002 | The multibyte support in PostgreSQL 6.5.x with SQL_ASCII encoding consumes an extra character when processing a character that cannot be converted, which could remove an escape character from the query and make the application subject to SQL injection attacks. | |||
| CVE-2002-0803 | 0.00 | — | 0.01 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows remote attackers to display restricted products and components via a direct HTTP request to queryhelp.cgi. | |||
| CVE-2002-0804 | 0.00 | — | 0.01 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when configured to perform reverse DNS lookups, allows remote attackers to bypass IP restrictions by connecting from a system with a spoofed reverse DNS hostname. | |||
| CVE-2002-0805 | 0.00 | — | 0.00 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, (1) creates new directories with world-writable permissions, and (2) creates the params file with world-writable permissions, which allows local users to modify the files and execute code. | |||
| CVE-2002-0806 | 0.00 | — | 0.00 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows authenticated users with editing privileges to delete other users by directly calling the editusers.cgi script with the "del" option. | |||
| CVE-2002-0807 | 0.00 | — | 0.01 | Aug 12, 2002 | Cross-site scripting vulnerabilities in Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, could allow remote attackers to execute script as other Bugzilla users via the full name (real name) field, which is not properly quoted by editusers.cgi. | |||
| CVE-2002-0808 | 0.00 | — | 0.01 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when performing a mass change, sets the groupset of all bugs to the groupset of the first bug, which could inadvertently cause insecure groupset permissions to be assigned to some bugs. | |||
| CVE-2002-0809 | 0.00 | — | 0.01 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, does not properly handle URL-encoded field names that are generated by some browsers, which could cause certain fields to appear to be unset, which has the effect of removing group permissions on bugs when buglist.cgi is… | |||
| CVE-2002-0810 | 0.00 | — | 0.01 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails. | |||
| CVE-2002-0811 | 0.00 | — | 0.02 | Aug 12, 2002 | Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, may allow remote attackers to cause a denial of service or execute certain queries via a SQL injection attack on the sort order parameter to buglist.cgi. | |||
| CVE-2002-0812 | 0.03 | — | 0.03 | Aug 12, 2002 | Information leak in Compaq WL310, and the Orinoco Residential Gateway access point it is based on, uses a system identification string as a default SNMP read/write community string, which allows remote attackers to obtain and modify sensitive configuration information by… | |||
| CVE-2002-0813 | 0.04 | — | 0.09 | Aug 12, 2002 | Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (reset) or modify configuration via a long filename. | |||
| CVE-2002-0814 | 0.04 | — | 0.14 | Aug 12, 2002 | Buffer overflow in VMware Authorization Service for VMware GSX Server 2.0.0 build-2050 allows remote authenticated users to execute arbitrary code via a long GLOBAL argument. | |||
| CVE-2002-0815 | 0.00 | — | 0.04 | Aug 12, 2002 | The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted… | |||
| CVE-2002-0816 | 0.00 | — | 0.00 | Aug 12, 2002 | Buffer overflow in su in Tru64 Unix 5.x allows local users to gain root privileges via a long username and argument. | |||
| CVE-2002-0817 | 0.03 | — | 0.01 | Aug 12, 2002 | Format string vulnerability in super for Linux allows local users to gain root privileges via a long command line argument. | |||
| CVE-2002-0818 | 0.00 | — | 0.04 | Aug 12, 2002 | wwwoffled in World Wide Web Offline Explorer (WWWOFFLE) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a negative Content-Length value. | |||
| CVE-2002-0819 | 0.00 | — | 0.00 | Aug 12, 2002 | Format string vulnerability in artsd, when called by artswrapper, allows local users to gain privileges via format strings in the -a argument, which results in an error message that is not properly handled in a call to the arts_fatal function. | |||
| CVE-2002-0820 | 0.00 | — | 0.00 | Aug 12, 2002 | FreeBSD kernel 4.6 and earlier closes the file descriptors 0, 1, and 2 after they have already been assigned to /dev/null when the descriptors reference procfs or linprocfs, which could allow local users to reuse the file descriptors in a setuid or setgid program to modify… | |||
| CVE-2002-0821 | 0.00 | — | 0.03 | Aug 12, 2002 | Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service or execute arbitrary code via (1) the BGP dissector, or (2) the WCP dissector. | |||
| CVE-2002-0822 | 0.00 | — | 0.01 | Aug 12, 2002 | Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecute arbitrary code via the (1) SOCKS, (2) RSVP, (3) AFS, or (4) LMP dissectors, which can be caused to core dump. | |||
| CVE-2002-0823 | 0.05 | — | 0.44 | Aug 12, 2002 | Buffer overflow in Winhlp32.exe allows remote attackers to execute arbitrary code via an HTML document that calls the HTML Help ActiveX control (HHCtrl.ocx) with a long pathname in the Item parameter. | |||
| CVE-2002-0824 | 0.03 | — | 0.01 | Aug 12, 2002 | BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specified as a tty device. | |||
| CVE-2002-0825 | 0.00 | — | 0.02 | Aug 12, 2002 | Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code. | |||
| CVE-2002-0826 | 0.01 | — | 0.12 | Aug 12, 2002 | Buffer overflow in WS_FTP FTP Server 3.1.1 allows remote authenticated users to execute arbitrary code via a long SITE CPWD command. | |||
| CVE-2002-0827 | 0.00 | — | 0.00 | Aug 12, 2002 | Vulnerability in pppd on UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to gain root privileges via (1) ppptalk or (2) ppp, a different vulnerability than CVE-2002-0824. | |||
| CVE-2002-0829 | 0.00 | — | 0.00 | Aug 12, 2002 | Integer overflow in the Berkeley Fast File System (FFS) in FreeBSD 4.6.1 RELEASE-p4 and earlier allows local users to access arbitrary file contents within FFS to gain privileges by creating a file that is larger than allowed by the virtual memory system. | |||
| CVE-2002-0830 | 0.00 | — | 0.02 | Aug 12, 2002 | Network File System (NFS) in FreeBSD 4.6.1 RELEASE-p7 and earlier, NetBSD 1.5.3 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service (hang) via an RPC message with a zero length payload, which causes NFS to reference a previous… | |||
| CVE-2002-0831 | 0.00 | — | 0.00 | Aug 12, 2002 | The kqueue mechanism in FreeBSD 4.3 through 4.6 STABLE allows local users to cause a denial of service (kernel panic) via a pipe call in which one end is terminated and an EVFILT_WRITE filter is registered for the other end. | |||
| CVE-2002-0832 | 0.01 | — | 0.10 | Aug 12, 2002 | Internet Explorer 5, 5.6, and 6 allows remote attackers to bypass cookie privacy settings and store information across browser sessions via the userData (storeuserData) feature. | |||
| CVE-2002-0833 | 0.03 | — | 0.03 | Aug 12, 2002 | Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a multi-part message with a long boundary string. | |||
| CVE-2002-0844 | Hig | 0.51 | 7.8 | 0.01 | Aug 12, 2002 | Off-by-one overflow in the CVS PreservePermissions of rcs.c for CVSD before 1.11.2 allows local users to execute arbitrary code. | ||
| CVE-2002-0845 | 0.01 | — | 0.13 | Aug 12, 2002 | Buffer overflow in Sun ONE / iPlanet Web Server 4.1 and 6.0 allows remote attackers to execute arbitrary code via an HTTP request using chunked transfer encoding. | |||
| CVE-2002-0846 | 0.00 | — | 0.03 | Aug 12, 2002 | The decoder for Macromedia Shockwave Flash allows remote attackers to execute arbitrary code via a malformed SWF header that contains more data than the specified length. | |||
| CVE-2002-0847 | 0.00 | — | 0.03 | Aug 12, 2002 | tinyproxy HTTP proxy 1.5.0, 1.4.3, and earlier allows remote attackers to execute arbitrary code via memory that is freed twice (double-free). | |||
| CVE-2002-0848 | 0.00 | — | 0.02 | Aug 12, 2002 | Cisco VPN 5000 series concentrator hardware 6.0.21.0002 and earlier, and 5.2.23.0003 and earlier, when using RADIUS with a challenge type of Password Authentication Protocol (PAP) or Challenge, sends the user password in cleartext in a validation retry request, which could allow… | |||
| CVE-2002-0849 | 0.00 | — | 0.00 | Aug 12, 2002 | Linux-iSCSI iSCSI implementation installs the iscsi.conf file with world-readable permissions on some operating systems, including Red Hat Linux Limbo Beta #1, which could allow local users to gain privileges by reading the cleartext CHAP password. | |||
| CVE-2002-1445 | 0.03 | — | 0.04 | Aug 12, 2002 | Cross-site scripting (XSS) vulnerability in CERN Proxy Server allows remote attackers to execute script as other users via a link to a non-existent page whose name contains the script, which is inserted into the resulting error page. | |||
| CVE-2002-1446 | 0.00 | — | 0.01 | Aug 1, 2002 | The error checking routine used for the C_Verify call on a symmetric verification key in the nCipher PKCS#11 library 1.2.0 and later returns the CKR_OK status even when it detects an invalid signature, which could allow remote attackers to modify or forge messages. | |||
| CVE-2002-1616 | 0.03 | — | 0.04 | Aug 1, 2002 | Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via (1) su, (2) chsh, (3) passwd, (4) chfn, (5) dxchpwd, and (6) libc. | |||
| CVE-2002-1449 | 0.00 | — | 0.03 | Jul 31, 2002 | eUpload 1.0 stores the password.txt password file in plaintext under the web document root, which allows remote attackers to overwrite arbitrary files by reading password.txt. | |||
| CVE-2002-1450 | 0.00 | — | 0.01 | Jul 31, 2002 | IBM UniVerse with UV/ODBC allows attackers to cause a denial of service (client crash or server CPU consumption) via a query with an invalid link between tables, possibly via a buffer overflow. | |||
| CVE-2002-0014 | 0.00 | — | 0.02 | Jul 26, 2002 | URL-handling code in Pine 4.43 and earlier allows remote attackers to execute arbitrary commands via a URL enclosed in single quotes and containing shell metacharacters (&). | |||
| CVE-2002-0031 | 0.03 | — | 0.05 | Jul 26, 2002 | Buffer overflows in Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary code via a ymsgr URI with long arguments to (1) call, (2) sendim, (3) getimv, (4) chat, (5) addview, or (6) addfriend. |
- CVE-2002-0796Aug 12, 2002risk 0.00cvss —epss 0.04
Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges.
- CVE-2002-0797Aug 12, 2002risk 0.00cvss —epss 0.03
Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges.
- CVE-2002-0798Aug 12, 2002risk 0.00cvss —epss 0.01
Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service.
- CVE-2002-0799Aug 12, 2002risk 0.04cvss —epss 0.14
Buffer overflow in YoungZSoft CMailServer 3.30 allows remote attackers to execute arbitrary code via a long USER argument.
- CVE-2002-0800Aug 12, 2002risk 0.00cvss —epss 0.02
BadBlue 1.7.0 allows remote attackers to list the contents of directories via a URL with an encoded '%' character at the end.
- CVE-2002-0801Aug 12, 2002risk 0.01cvss —epss 0.09
Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to the filter with a long HTTP host header field in a URL for a .jsp file.
- CVE-2002-0802Aug 12, 2002risk 0.00cvss —epss 0.01
The multibyte support in PostgreSQL 6.5.x with SQL_ASCII encoding consumes an extra character when processing a character that cannot be converted, which could remove an escape character from the query and make the application subject to SQL injection attacks.
- CVE-2002-0803Aug 12, 2002risk 0.00cvss —epss 0.01
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows remote attackers to display restricted products and components via a direct HTTP request to queryhelp.cgi.
- CVE-2002-0804Aug 12, 2002risk 0.00cvss —epss 0.01
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when configured to perform reverse DNS lookups, allows remote attackers to bypass IP restrictions by connecting from a system with a spoofed reverse DNS hostname.
- CVE-2002-0805Aug 12, 2002risk 0.00cvss —epss 0.00
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, (1) creates new directories with world-writable permissions, and (2) creates the params file with world-writable permissions, which allows local users to modify the files and execute code.
- CVE-2002-0806Aug 12, 2002risk 0.00cvss —epss 0.00
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows authenticated users with editing privileges to delete other users by directly calling the editusers.cgi script with the "del" option.
- CVE-2002-0807Aug 12, 2002risk 0.00cvss —epss 0.01
Cross-site scripting vulnerabilities in Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, could allow remote attackers to execute script as other Bugzilla users via the full name (real name) field, which is not properly quoted by editusers.cgi.
- CVE-2002-0808Aug 12, 2002risk 0.00cvss —epss 0.01
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when performing a mass change, sets the groupset of all bugs to the groupset of the first bug, which could inadvertently cause insecure groupset permissions to be assigned to some bugs.
- CVE-2002-0809Aug 12, 2002risk 0.00cvss —epss 0.01
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, does not properly handle URL-encoded field names that are generated by some browsers, which could cause certain fields to appear to be unset, which has the effect of removing group permissions on bugs when buglist.cgi is…
- CVE-2002-0810Aug 12, 2002risk 0.00cvss —epss 0.01
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, directs error messages from the syncshadowdb command to the HTML output, which could leak sensitive information, including plaintext passwords, if syncshadowdb fails.
- CVE-2002-0811Aug 12, 2002risk 0.00cvss —epss 0.02
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, may allow remote attackers to cause a denial of service or execute certain queries via a SQL injection attack on the sort order parameter to buglist.cgi.
- CVE-2002-0812Aug 12, 2002risk 0.03cvss —epss 0.03
Information leak in Compaq WL310, and the Orinoco Residential Gateway access point it is based on, uses a system identification string as a default SNMP read/write community string, which allows remote attackers to obtain and modify sensitive configuration information by…
- CVE-2002-0813Aug 12, 2002risk 0.04cvss —epss 0.09
Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (reset) or modify configuration via a long filename.
- CVE-2002-0814Aug 12, 2002risk 0.04cvss —epss 0.14
Buffer overflow in VMware Authorization Service for VMware GSX Server 2.0.0 build-2050 allows remote authenticated users to execute arbitrary code via a long GLOBAL argument.
- CVE-2002-0815Aug 12, 2002risk 0.00cvss —epss 0.04
The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted…
- CVE-2002-0816Aug 12, 2002risk 0.00cvss —epss 0.00
Buffer overflow in su in Tru64 Unix 5.x allows local users to gain root privileges via a long username and argument.
- CVE-2002-0817Aug 12, 2002risk 0.03cvss —epss 0.01
Format string vulnerability in super for Linux allows local users to gain root privileges via a long command line argument.
- CVE-2002-0818Aug 12, 2002risk 0.00cvss —epss 0.04
wwwoffled in World Wide Web Offline Explorer (WWWOFFLE) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a negative Content-Length value.
- CVE-2002-0819Aug 12, 2002risk 0.00cvss —epss 0.00
Format string vulnerability in artsd, when called by artswrapper, allows local users to gain privileges via format strings in the -a argument, which results in an error message that is not properly handled in a call to the arts_fatal function.
- CVE-2002-0820Aug 12, 2002risk 0.00cvss —epss 0.00
FreeBSD kernel 4.6 and earlier closes the file descriptors 0, 1, and 2 after they have already been assigned to /dev/null when the descriptors reference procfs or linprocfs, which could allow local users to reuse the file descriptors in a setuid or setgid program to modify…
- CVE-2002-0821Aug 12, 2002risk 0.00cvss —epss 0.03
Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service or execute arbitrary code via (1) the BGP dissector, or (2) the WCP dissector.
- CVE-2002-0822Aug 12, 2002risk 0.00cvss —epss 0.01
Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecute arbitrary code via the (1) SOCKS, (2) RSVP, (3) AFS, or (4) LMP dissectors, which can be caused to core dump.
- CVE-2002-0823Aug 12, 2002risk 0.05cvss —epss 0.44
Buffer overflow in Winhlp32.exe allows remote attackers to execute arbitrary code via an HTML document that calls the HTML Help ActiveX control (HHCtrl.ocx) with a long pathname in the Item parameter.
- CVE-2002-0824Aug 12, 2002risk 0.03cvss —epss 0.01
BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specified as a tty device.
- CVE-2002-0825Aug 12, 2002risk 0.00cvss —epss 0.02
Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.
- CVE-2002-0826Aug 12, 2002risk 0.01cvss —epss 0.12
Buffer overflow in WS_FTP FTP Server 3.1.1 allows remote authenticated users to execute arbitrary code via a long SITE CPWD command.
- CVE-2002-0827Aug 12, 2002risk 0.00cvss —epss 0.00
Vulnerability in pppd on UnixWare 7.1.1 and Open UNIX 8.0.0 allows local users to gain root privileges via (1) ppptalk or (2) ppp, a different vulnerability than CVE-2002-0824.
- CVE-2002-0829Aug 12, 2002risk 0.00cvss —epss 0.00
Integer overflow in the Berkeley Fast File System (FFS) in FreeBSD 4.6.1 RELEASE-p4 and earlier allows local users to access arbitrary file contents within FFS to gain privileges by creating a file that is larger than allowed by the virtual memory system.
- CVE-2002-0830Aug 12, 2002risk 0.00cvss —epss 0.02
Network File System (NFS) in FreeBSD 4.6.1 RELEASE-p7 and earlier, NetBSD 1.5.3 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service (hang) via an RPC message with a zero length payload, which causes NFS to reference a previous…
- CVE-2002-0831Aug 12, 2002risk 0.00cvss —epss 0.00
The kqueue mechanism in FreeBSD 4.3 through 4.6 STABLE allows local users to cause a denial of service (kernel panic) via a pipe call in which one end is terminated and an EVFILT_WRITE filter is registered for the other end.
- CVE-2002-0832Aug 12, 2002risk 0.01cvss —epss 0.10
Internet Explorer 5, 5.6, and 6 allows remote attackers to bypass cookie privacy settings and store information across browser sessions via the userData (storeuserData) feature.
- CVE-2002-0833Aug 12, 2002risk 0.03cvss —epss 0.03
Buffer overflow in Eudora 5.1.1 and 5.0-J for Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a multi-part message with a long boundary string.
- risk 0.51cvss 7.8epss 0.01
Off-by-one overflow in the CVS PreservePermissions of rcs.c for CVSD before 1.11.2 allows local users to execute arbitrary code.
- CVE-2002-0845Aug 12, 2002risk 0.01cvss —epss 0.13
Buffer overflow in Sun ONE / iPlanet Web Server 4.1 and 6.0 allows remote attackers to execute arbitrary code via an HTTP request using chunked transfer encoding.
- CVE-2002-0846Aug 12, 2002risk 0.00cvss —epss 0.03
The decoder for Macromedia Shockwave Flash allows remote attackers to execute arbitrary code via a malformed SWF header that contains more data than the specified length.
- CVE-2002-0847Aug 12, 2002risk 0.00cvss —epss 0.03
tinyproxy HTTP proxy 1.5.0, 1.4.3, and earlier allows remote attackers to execute arbitrary code via memory that is freed twice (double-free).
- CVE-2002-0848Aug 12, 2002risk 0.00cvss —epss 0.02
Cisco VPN 5000 series concentrator hardware 6.0.21.0002 and earlier, and 5.2.23.0003 and earlier, when using RADIUS with a challenge type of Password Authentication Protocol (PAP) or Challenge, sends the user password in cleartext in a validation retry request, which could allow…
- CVE-2002-0849Aug 12, 2002risk 0.00cvss —epss 0.00
Linux-iSCSI iSCSI implementation installs the iscsi.conf file with world-readable permissions on some operating systems, including Red Hat Linux Limbo Beta #1, which could allow local users to gain privileges by reading the cleartext CHAP password.
- CVE-2002-1445Aug 12, 2002risk 0.03cvss —epss 0.04
Cross-site scripting (XSS) vulnerability in CERN Proxy Server allows remote attackers to execute script as other users via a link to a non-existent page whose name contains the script, which is inserted into the resulting error page.
- CVE-2002-1446Aug 1, 2002risk 0.00cvss —epss 0.01
The error checking routine used for the C_Verify call on a symmetric verification key in the nCipher PKCS#11 library 1.2.0 and later returns the CKR_OK status even when it detects an invalid signature, which could allow remote attackers to modify or forge messages.
- CVE-2002-1616Aug 1, 2002risk 0.03cvss —epss 0.04
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via (1) su, (2) chsh, (3) passwd, (4) chfn, (5) dxchpwd, and (6) libc.
- CVE-2002-1449Jul 31, 2002risk 0.00cvss —epss 0.03
eUpload 1.0 stores the password.txt password file in plaintext under the web document root, which allows remote attackers to overwrite arbitrary files by reading password.txt.
- CVE-2002-1450Jul 31, 2002risk 0.00cvss —epss 0.01
IBM UniVerse with UV/ODBC allows attackers to cause a denial of service (client crash or server CPU consumption) via a query with an invalid link between tables, possibly via a buffer overflow.
- CVE-2002-0014Jul 26, 2002risk 0.00cvss —epss 0.02
URL-handling code in Pine 4.43 and earlier allows remote attackers to execute arbitrary commands via a URL enclosed in single quotes and containing shell metacharacters (&).
- CVE-2002-0031Jul 26, 2002risk 0.03cvss —epss 0.05
Buffer overflows in Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary code via a ymsgr URI with long arguments to (1) call, (2) sendim, (3) getimv, (4) chat, (5) addview, or (6) addfriend.