7.5
    High

    CVE-2002-0799

    Last Modified: 13 Dec 2016

    Buffer overflow in YoungZSoft CMailServer 3.30 allows remote attackers to execute arbitrary code via a long USER argument.

    Source:anonymous
    Published:26 Jul 2002
    5.5
    Medium

    CVE-2002-0793

    Last Modified: 23 Sept 2012

    Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.

    Source:Simon Ouellette
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0787

    Last Modified: 22 Sept 2012

    Cross-site scripting vulnerabilities in iCon administrative web server for Critical Path inJoin Directory Server 4.0 allow remote attackers to execute script as the administrator via administrator URLs with modified (1) LOCID or (2) OC parameters.

    Source:Nomad Mobile Research Centre
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0786

    Last Modified: 22 Sept 2012

    iCon administrative web server for Critical Path inJoin Directory Server 4.0 allows authenticated inJoin administrators to read arbitrary files by specifying the target file in the LOG parameter.

    Source:Nomad Mobile Research Centre
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0783

    Last Modified: 22 Sept 2012

    Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL.

    Source:Andreas Sandblad
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0775

    Last Modified: 22 Sept 2012

    browse.asp in Hosting Controller allows remote attackers to view arbitrary directories by specifying the target pathname in the FilePath parameter.

    Source:Bao Dai Nhan
    Published:26 Jul 2002
    10
    Critical

    CVE-2002-0773

    Last Modified: 22 Sept 2012

    imp_rootdir.asp for Hosting Controller allows remote attackers to copy or delete arbitrary files and directories via a direct request to imp_rootdir.asp and modifying parameters such as (1) ftp, (2) owwwPath, and (3) oftpPath.

    Source:hdlkha
    Published:26 Jul 2002
    6.4
    Medium

    CVE-2002-0772

    Last Modified: 22 Sept 2012

    Directory traversal vulnerability in dsnmanager.asp for Hosting Controller allows remote attackers to read arbitrary files and directories via a .. (dot dot) in the RootName parameter.

    Source:hdlkha
    Published:26 Jul 2002
    6.4
    Medium

    CVE-2002-0771

    Last Modified: 23 Sept 2012

    Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote attackers to inject script and steal cookies via the (1) cvsroot or (2) sortby parameters.

    Source:office
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0770

    Last Modified: 22 Sept 2012

    Quake 2 (Q2) server 3.20 and 3.21 allows remote attackers to obtain sensitive server cvar variables, obtain directory listings, and execute Q2 server admin commands via a client that does not expand "$" macros, which causes the server to expand the macros and leak the information, as demonstrated using "say $rcon_password."

    Source:Redix
    Published:26 Jul 2002
    6.4
    Medium

    CVE-2002-0769

    Last Modified: 22 Sept 2012

    The web-based configuration interface for the Cisco ATA 186 Analog Telephone Adaptor allows remote attackers to bypass authentication via an HTTP POST request with a single byte, which allows the attackers to (1) obtain the password from the login screen, or (2) reconfigure the adaptor by modifying certain request parameters.

    Source:Patrick Michael Kane
    Published:26 Jul 2002
    7.2
    High

    CVE-2002-0767

    Last Modified: 26 Sept 2012

    simpleinit on Linux systems does not close a read/write FIFO file descriptor before creating a child process, which allows the child process to cause simpleinit to execute arbitrary programs with root privileges.

    Source:Patrick Smith
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0764

    Last Modified: 22 Sept 2012

    Phorum 3.3.2a allows remote attackers to execute arbitrary commands via an HTTP request to (1) plugin.php, (2) admin.php, or (3) del.php that modifies the PHORUM[settings_dir] variable to point to a directory that contains a PHP file with the commands.

    Source:markus arndt
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0749

    Last Modified: 20 Sept 2012

    CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.

    Source:Steve Gustin
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0748

    Last Modified: 20 Sept 2012

    LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.

    Source:Steve Zins
    Published:12 Aug 2002
    10
    Critical

    CVE-2002-0747

    Last Modified: 16 Nov 2012

    Buffer overflow in lsmcode in AIX 4.3.3.

    Source:watercloud
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0741

    Last Modified: 30 Mar 2016

    psyBNC 2.3 allows remote attackers to cause a denial of service (CPU consumption and resource exhaustion) by sending a PASS command with a long password argument and quickly killing the connection, which is not properly terminated by psyBNC.

    Source:Lunar Fault
    Published:12 Aug 2002
    7.2
    High

    CVE-2002-0740

    Last Modified: 20 Sept 2012

    Buffer overflow in slrnpull for the SLRN package, when installed setuid or setgid, allows local users to gain privileges via a long -d (SPOOLDIR) argument.

    Source:zillion
    Published:26 Jul 2002
    6.4
    Medium

    CVE-2002-0737

    Last Modified: 19 Sept 2012

    Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.

    Source:pgrundl
    Published:12 Aug 2002
    7.5
    High

    CVE-2002-0734

    Last Modified: 21 Sept 2012

    b2edit.showposts.php in B2 2.0.6pre2 and earlier does not properly load the b2config.php file in some configurations, which allows remote attackers to execute arbitrary PHP code via a URL that sets the $b2inc variable to point to a malicious program stored on a remote server.

    Source:Frank
    Published:12 Aug 2002
    7.5
    High

    CVE-2002-0733

    Last Modified: 21 Sept 2012

    Cross-site scripting vulnerability in thttpd 2.20 and earlier allows remote attackers to execute arbitrary script via a URL to a nonexistent page, which causes thttpd to insert the script into a 404 error message.

    Source:frog
    Published:12 Aug 2002
    7.5
    High

    CVE-2002-0732

    Last Modified: 21 Sept 2012

    Cross-site scripting vulnerability in MyGuestbook 1.0 allows remote attackers to execute arbitrary script or inject HTML via fields such as (1) user name or (2) comments.

    Source:BrainRawt
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0731

    Last Modified: 20 Sept 2012

    Cross-site scripting vulnerability in demonstration scripts for vqServer allows remote attackers to execute arbitrary script via a link that contains the script in arguments to demo scripts such as respond.pl.

    Source:Matthew Murphy
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0730

    Last Modified: 20 Sept 2012

    Cross-site scripting vulnerability in guestbook.pl for Philip Chinery's Guestbook 1.1 allows remote attackers to execute Javascript or HTML via fields such as (1) Name, (2) EMail, or (3) Homepage.

    Source:markus arndt
    Published:26 Jul 2002
    7.5
    High

    CVE-2002-0724

    Last Modified: 6 Oct 2012

    Buffer overflow in SMB (Server Message Block) protocol in Microsoft Windows NT, Windows 2000, and Windows XP allows attackers to cause a denial of service (crash) via a SMB_COM_TRANSACTION packet with a request for the (1) NetShareEnum, (2) NetServerEnum2, or (3) NetServerEnum3, aka "Unchecked Buffer in Network Share Provider Can Lead to Denial of Service".

    Source:Frederic Deletang
    Published:24 Aug 2002
    7.5
    High

    CVE-2002-0723

    Last Modified: 29 Sept 2012

    Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka "Cross Domain Verification in Object Tag."

    Source:Thor Larholm
    Published:24 Aug 2002
    10
    Critical

    CVE-2002-0721

    Last Modified: 4 Oct 2012

    Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that are associated with helper functions, which could allow unprivileged users, and possibly remote attackers, to run stored procedures with administrator privileges via (1) xp_execresultset, (2) xp_printstatements, or (3) xp_displayparamstmt.

    Source:David Litchfield
    Published:20 Aug 2002
    7.5
    High

    CVE-2002-0709

    Last Modified: 11 Oct 2012

    SQL injection vulnerabilities in the Web Reports Server for SurfControl SuperScout WebFilter allow remote attackers to execute arbitrary SQL queries via the RunReport option to SimpleBar.dll, and possibly other DLLs.

    Source:Matt Moore
    Published:3 Oct 2002
    5
    Medium

    CVE-2002-0708

    Last Modified: 11 Oct 2012

    Directory traversal vulnerability in the Web Reports Server for SurfControl SuperScout WebFilter allows remote attackers to read arbitrary files via an HTTP request containing ... (triple dot) sequences.

    Source:Matt Moore
    Published:3 Oct 2002
    10
    Critical

    CVE-2002-0702

    Last Modified: 22 Sept 2012

    Format string vulnerabilities in the logging routines for dynamic DNS code (print.c) of ISC DHCP daemon (DHCPD) 3 to 3.0.1rc8, with the NSUPDATE option enabled, allow remote malicious DNS servers to execute arbitrary code via format strings in a DNS server response.

    Source:Andi
    Published:23 Jul 2002
    7.5
    High

    CVE-2002-0693

    Last Modified: 11 Oct 2012

    Buffer overflow in the HTML Help ActiveX Control (hhctrl.ocx) in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute code via (1) a long parameter to the Alink function, or (2) script containing a long argument to the showHelp function.

    Source:ipxodi
    Published:5 Oct 2002
    7.5
    High

    CVE-2002-0682

    Last Modified: 29 Sept 2012

    Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.

    Source:Matt Moore
    Published:23 Jul 2002
    7.5
    High

    CVE-2002-0681

    Last Modified: 30 Sept 2012

    Cross-site scripting vulnerability in GoAhead Web Server 2.1 allows remote attackers to execute script as other web users via script in a URL that generates a "404 not found" message, which does not quote the script.

    Source:Matt Moore
    Published:12 Jul 2002
    5
    Medium

    CVE-2002-0680

    Last Modified: 30 Sept 2012

    Directory traversal vulnerability in GoAhead Web Server 2.1 allows remote attackers to read arbitrary files via a URL with an encoded / (%5C) in a .. (dot dot) sequence. NOTE: it is highly likely that this candidate will be REJECTED because it has been reported to be a duplicate of CVE-2001-0228.

    Source:Matt Moore
    Published:12 Jul 2002
    7.5
    High

    CVE-2002-0676

    Last Modified: 1 Oct 2012

    SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitrary code by posing as the Apple update server via techniques such as DNS spoofing or cache poisoning, and supplying Trojan Horse updates.

    Source:Russell Harding
    Published:11 Jul 2002
    10
    Critical

    CVE-2002-0665

    Last Modified: 28 Sept 2012

    Macromedia JRun Administration Server allows remote attackers to bypass authentication on the login form via an extra slash (/) in the URL.

    Source:Matt Moore
    Published:11 Jul 2002
    7.5
    High

    CVE-2002-0661

    Last Modified: 3 Oct 2012

    Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing \ (backslash) characters.

    Source:Auriemma Luigi
    Published:10 Aug 2002
    5
    Medium

    CVE-2002-0659

    Last Modified: 6 Dec 2012

    The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial of service via invalid encodings.

    Source:Syzop
    Published:30 Jul 2002
    6.2
    Medium

    CVE-2002-0658

    Last Modified: 2 Oct 2012

    OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a symbolic link attack.

    Source:Sebastian Krahmer
    Published:29 Jul 2002
    7.5
    High

    CVE-2002-0656

    Last Modified: 8 Sept 2016

    Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a large client master key in SSL2 or (2) a large session ID in SSL3.

    Source:Solar Eclipse
    Published:30 Jul 2002
    5
    Medium

    CVE-2002-0654

    Last Modified: 4 Oct 2012

    Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.

    Source:Auriemma Luigi
    Published:20 Aug 2002
    7.8
    High

    CVE-2002-0653

    Last Modified: 8 Sept 2016

    Off-by-one buffer overflow in the ssl_compat_directive function, as called by the rewrite_command hook for mod_ssl Apache module 2.8.9 and earlier, allows local users to execute arbitrary code as the Apache server user via .htaccess files with long entries.

    Source:Frank DENIS
    Published:24 Jun 2002
    7.5
    High

    CVE-2002-0652

    Last Modified: 28 Sept 2012

    xfsmd for IRIX 6.5 through 6.5.16 allows remote attackers to execute arbitrary code via shell metacharacters that are not properly filtered from several calls to the popen() function, such as export_fs().

    Source:Last Stage of Delirium
    Published:1 Jul 2002
    7.5
    High

    CVE-2002-0649

    Last Modified: 9 Mar 2011

    Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSDE) allow remote attackers to cause a denial of service or execute arbitrary code via UDP packets to port 1434 in which (1) a 0x04 byte that causes the SQL Monitor thread to generate a long registry key name, or (2) a 0x08 byte with a long string causes heap corruption, as exploited by the Slammer/Sapphire worm.

    Source:Metasploit
    Published:26 Jul 2002
    5
    Medium

    CVE-2002-0648

    Last Modified: 6 Oct 2012

    The legacy <script> data-island capability for XML in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to read arbitrary XML files, and portions of other files, via a URL whose "src" attribute redirects to a local file.

    Source:GreyMagic Software
    Published:24 Sept 2002
    7.5
    High

    CVE-2002-0647

    Last Modified: 6 Oct 2012

    Buffer overflow in a legacy ActiveX control used to display specially formatted text in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code, aka "Buffer Overrun in Legacy Text Formatting ActiveX Control".

    Source:Mark Litchfield
    Published:24 Sept 2002
    7.5
    High

    CVE-2002-0644

    Last Modified: 1 Oct 2012

    Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows members of the db_owner and db_ddladmin roles to execute arbitrary code.

    Source:Cesar Cerrudo
    Published:26 Jul 2002
    10
    Critical

    CVE-2002-0640

    Last Modified: 28 Sept 2012

    Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses during challenge response authentication when OpenBSD is using PAM modules with interactive keyboard authentication (PAMAuthenticationViaKbdInt).

    Source:Christophe Devine
    Published:26 Jun 2002
    7.5
    High

    CVE-2002-0637

    Last Modified: 30 Sept 2012

    InterScan VirusWall 3.52 build 1462 allows remote attackers to bypass virus protection via e-mail messages with headers that violate RFC specifications by having (or missing) space characters in unexpected places (aka "space gap"), such as (1) Content-Type :", (2) "Content-Transfer-Encoding :", (3) no space before a boundary declaration, or (4) "boundary= ", which is processed by Outlook Express.

    Source:SecuriTeam
    Published:4 Jul 2002
    7.5
    High

    CVE-2002-0624

    Last Modified: 27 Sept 2012

    Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows remote attackers to gain control of the database and execute arbitrary code via SQL Server Authentication, aka "Unchecked Buffer in Password Encryption Procedure."

    Source:Martin Rakhmanoff
    Published:12 Jul 2002