7.5
    High

    CVE-2002-0193

    Last Modified: 22 Sept 2012

    Microsoft Internet Explorer 5.01 and 6.0 allow remote attackers to execute arbitrary code via malformed Content-Disposition and Content-Type header fields that cause the application for the spoofed file type to pass the file back to the operating system for handling rather than raise an error message, aka the first variant of the "Content Disposition" vulnerability.

    Source:Jani Laatikainen
    Published:29 May 2002
    Low

    CVE-2002-0192

    Last Modified: 22 Sept 2012

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0193, CVE-2002-1564. Reason: This candidate was published with a description that identified a different vulnerability than what was identified in the original authoritative reference. Notes: Consult CVE-2002-0193 or CVE-2002-1564 to find the identifier for the proper issue

    Source:Jani Laatikainen
    Published:17 May 2002
    5
    Medium

    CVE-2002-0191

    Last Modified: 18 Sept 2012

    Microsoft Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to view arbitrary files that contain the "{" character via script containing the cssText property of the stylesheet object, aka "Local Information Disclosure through HTML Object" vulnerability.

    Source:GreyMagic Software
    Published:29 May 2002
    7.5
    High

    CVE-2002-0189

    Last Modified: 6 Oct 2012

    Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability.

    Source:GreyMagic Software
    Published:17 May 2002
    7.5
    High

    CVE-2002-0187

    Last Modified: 26 Sept 2012

    Cross-site scripting vulnerability in the SQLXML component of Microsoft SQL Server 2000 allows an attacker to execute arbitrary script via the root parameter as part of an XML SQL query, aka "Script Injection via XML Tag."

    Source:Matt Moore
    Published:3 Jul 2002
    7.5
    High

    CVE-2002-0186

    Last Modified: 26 Sept 2012

    Buffer overflow in the SQLXML ISAPI extension of Microsoft SQL Server 2000 allows remote attackers to execute arbitrary code via data queries with a long content-type parameter, aka "Unchecked Buffer in SQLXML ISAPI Extension."

    Source:Matt Moore
    Published:3 Jul 2002
    7.8
    High

    CVE-2002-0184

    Last Modified: 21 Sept 2012

    Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local users to gain root privileges via special characters in the -p (prompt) argument, which are not properly expanded.

    Source:MaXX
    Published:25 Apr 2002
    7.5
    High

    CVE-2002-0177

    Last Modified: 18 Sept 2012

    Buffer overflows in icecast 1.3.11 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request from an MP3 client.

    Source:dizznutt
    Published:2 Apr 2002
    7.5
    High

    CVE-2002-0163

    Last Modified: 28 Mar 2016

    Heap-based buffer overflow in Squid before 2.4 STABLE4, and Squid 2.5 and 2.6 until March 12, 2002 distributions, allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via compressed DNS responses.

    Source:Teso
    Published:26 Mar 2002
    6.2
    Medium

    CVE-2002-0162

    Last Modified: 18 Sept 2012

    LogWatch before 2.5 allows local users to execute arbitrary code via a symlink attack on the logwatch temporary directory.

    Source:spybreak
    Published:27 Mar 2002
    7.2
    High

    CVE-2002-0158

    Last Modified: 18 Sept 2012

    Buffer overflow in Xsun on Solaris 2.6 through 8 allows local users to gain root privileges via a long -co (color database) command line argument.

    Source:gloomy
    Published:2 Apr 2002
    7.5
    High

    CVE-2002-0153

    Last Modified: 10 Sept 2012

    Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability.

    Source:Jass Seljamaa
    Published:22 Apr 2002
    7.5
    High

    CVE-2002-0148

    Last Modified: 18 Sept 2012

    Cross-site scripting vulnerability in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as other users via an HTTP error page.

    Source:Thor Larholm
    Published:22 Apr 2002
    4.6
    Medium

    CVE-2002-0143

    Last Modified: 10 Sept 2012

    Buffer overflow in Eterm of Enlightenment Imlib2 1.0.4 and earlier allows local users to execute arbitrary code via a long HOME environment variable.

    Source:Charles Stevenson
    Published:25 Mar 2002
    7.5
    High

    CVE-2002-0142

    Last Modified: 10 Sept 2012

    CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of . (dot) characters.

    Source:aT4r
    Published:15 Mar 2002
    7.5
    High

    CVE-2002-0140

    Last Modified: 10 Sept 2012

    Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and possibly execute arbitrary code via a long or malformed DNS reply, which is not handled properly by parse_query, get_objectname, and possibly other functions.

    Source:Andrew Griffiths
    Published:15 Mar 2002
    7.2
    High

    CVE-2002-0137

    Last Modified: 10 Sept 2012

    CDRDAO 1.1.4 and 1.1.5 allows local users to overwrite arbitrary files via a symlink attack on the $HOME/.cdrdao configuration file.

    Source:anonymous
    Published:15 Mar 2002
    5
    Medium

    CVE-2002-0135

    Last Modified: 10 Sept 2012

    Netopia Timbuktu Pro 6.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a series of connections to one of the ports (1417 - 1420).

    Source:Tekno pHReak
    Published:15 Mar 2002
    7.2
    High

    CVE-2002-0132

    Last Modified: 10 Sept 2012

    Buffer overflow in Chinput 3.0 allows local users to execute arbitrary code via a long HOME environment variable.

    Source:xperc
    Published:15 Mar 2002
    7.5
    High

    CVE-2002-0128

    Last Modified: 10 Sept 2012

    cgitest.exe in Sambar Server 5.1 before Beta 4 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long argument.

    Source:Tamer Sahin
    Published:25 Mar 2002
    7.5
    High

    CVE-2002-0118

    Last Modified: 9 Sept 2012

    Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.

    Source:Obscure
    Published:15 Mar 2002
    7.5
    High

    CVE-2002-0117

    Last Modified: 9 Sept 2012

    Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.

    Source:Obscure
    Published:25 Mar 2002
    5
    Medium

    CVE-2002-0115

    Last Modified: 9 Sept 2012

    Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of service (crash and core dump) via a malformed ICMP packet.

    Source:Sinbad
    Published:25 Mar 2002
    5
    Medium

    CVE-2002-0112

    Last Modified: 9 Sept 2012

    Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.

    Source:Tamer Sahin
    Published:15 Mar 2002
    5
    Medium

    CVE-2002-0107

    Last Modified: 9 Sept 2012

    Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive information via a series of GET requests that do not end in with HTTP/1.0 or another version string, which causes the information to be leaked in the error message.

    Source:Bjorn Djupvik
    Published:25 Mar 2002
    5
    Medium

    CVE-2002-0106

    Last Modified: 21 Sept 2012

    BEA Systems Weblogic Server 6.1 allows remote attackers to cause a denial of service via a series of requests to .JSP files that contain an MS-DOS device name.

    Source:Peter Gründl
    Published:15 Mar 2002
    7.5
    High

    CVE-2002-0098

    Last Modified: 9 Sept 2012

    Buffer overflow in index.cgi administration interface for Boozt! Standard 0.9.8 allows local users to execute arbitrary code via a long name field when creating a new banner.

    Source:Rafael San Miguel Carrasco
    Published:25 Mar 2002
    7.5
    High

    CVE-2002-0095

    Last Modified: 9 Sept 2012

    The default configuration of BSCW (Basic Support for Cooperative Work) 3.x and possibly version 4 enables user self registration, which could allow remote attackers to upload files and possibly join a user community that was intended to be closed.

    Source:Thomas Seliger
    Published:25 Mar 2002
    9.8
    Critical

    CVE-2002-0083

    Last Modified: 23 Sept 2012

    Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

    Source:Morgan
    Published:7 Mar 2002
    7.5
    High

    CVE-2002-0082

    Last Modified: 16 Nov 2017

    The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly initialize memory using the i2d_SSL_SESSION function, which allows remote attackers to use a buffer overflow to execute arbitrary code via a large client certificate that is signed by a trusted Certificate Authority (CA), which produces a large serialized session.

    Source:spabam
    Published:27 Feb 2002
    7.5
    High

    CVE-2002-0079

    Last Modified: 18 Sept 2012

    Buffer overflow in the chunked encoding transfer mechanism in Internet Information Server (IIS) 4.0 and 5.0 Active Server Pages allows attackers to cause a denial of service or execute arbitrary code.

    Source:CHINANSL Security Team
    Published:22 Apr 2002
    7.5
    High

    CVE-2002-0068

    Last Modified: 12 Sept 2012

    Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbitrary code with an ftp:// URL with a larger number of special characters, which exceed the buffer when Squid URL-escapes the characters.

    Source:gunzip
    Published:21 Feb 2002
    7.5
    High

    CVE-2002-0061

    Last Modified: 17 Sept 2012

    Apache for Win32 before 1.3.24, and 2.0.x before 2.0.34-beta, allows remote attackers to execute arbitrary commands via shell metacharacters (a | pipe character) provided as arguments to batch (.bat) or .cmd scripts, which are sent unfiltered to the shell interpreter, typically cmd.exe.

    Source:SPAX
    Published:21 Mar 2002
    10
    Critical

    CVE-2002-0048

    Last Modified: 10 Sept 2012

    Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other versions allow remote attackers to cause a denial of service and execute arbitrary code in the rsync client or server.

    Source:sorbo
    Published:25 Jan 2002
    7.2
    High

    CVE-2002-0043

    Last Modified: 21 Sept 2016

    sudo 1.6.0 through 1.6.3p7 does not properly clear the environment before calling the mail program, which could allow local users to gain root privileges by modifying environment variables and changing how the mail program is invoked.

    Source:Charles Stevenson
    Published:14 Jan 2002
    10
    Critical

    CVE-2002-0033

    Last Modified: 21 Sept 2012

    Heap-based buffer overflow in cfsd_calloc function of Solaris cachefsd allows remote attackers to execute arbitrary code via a request with a long directory and cache name.

    Source:Last Stage of Delirium
    Published:29 May 2002
    4.6
    Medium

    CVE-2002-0031

    Last Modified: 22 Nov 2017

    Buffer overflows in Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary code via a ymsgr URI with long arguments to (1) call, (2) sendim, (3) getimv, (4) chat, (5) addview, or (6) addfriend.

    Source:Rave
    Published:11 Jun 2002
    5
    Medium

    CVE-2002-0023

    Last Modified: 9 Sept 2012

    Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to read arbitrary files via malformed requests to the GetObject function, which bypass some of GetObject's security checks.

    Source:Georgi Guninski
    Published:8 Mar 2002
    10
    Critical

    CVE-2002-0013

    Last Modified: 12 Sept 2012

    Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each vendor. This and other SNMP-related candidates will be updated when more accurate information is available.

    Source:kundera
    Published:12 Feb 2002
    7.5
    High

    CVE-2002-0006

    Last Modified: 23 Sept 2012

    XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as other clients via encoded characters in a PRIVMSG command that calls CTCP PING, which expands the characters in the client response when the percascii variable is set.

    Source:Marcus Meissner
    Published:9 Jan 2002
    10
    Critical

    CVE-2002-0005

    Last Modified: 23 Sept 2012

    Buffer overflow in AOL Instant Messenger (AIM) 4.7.2480, 4.8.2616, and other versions allows remote attackers to execute arbitrary code via a long argument in a game request (AddGame).

    Source:Matt Conover
    Published:31 Jan 2002
    7.2
    High

    CVE-2002-0004

    Last Modified: 23 Sept 2012

    Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.

    Source:SuSE Security
    Published:17 Jan 2002
    7.5
    High

    CVE-2002-0002

    Last Modified: 9 Sept 2012

    Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.

    Source:deltha
    Published:18 Dec 2001
    Unknown

    CVE-2001-3389

    https://github.com/becrevex/Gaston

    10
    Critical

    CVE-2001-1586

    Last Modified: 3 Sept 2012

    Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary programs via encoded ../ ("%2E%2E%2F%") sequences in a request to the cgi-bin/ directory, a different vulnerability than CVE-2000-0664.

    Source:THRAN
    Published:12 Feb 2010
    10
    Critical

    CVE-2001-1583

    Last Modified: 16 Apr 2026

    lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request with a crafted control file that is not properly handled when lpd invokes a mail program. NOTE: this might be the same vulnerability as CVE-2000-1220.

    Source:Optyx
    Published:31 Dec 2001
    7.2
    High

    CVE-2001-1582

    Last Modified: 31 Aug 2012

    Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary code via a long LDAP_OPTIONS environment variable to a privileged program that uses libsldap.

    Source:noir
    Published:31 Dec 2001
    7.2
    High

    CVE-2001-1561

    Last Modified: 1 Sept 2012

    Buffer overflow in Xvt 2.1 in Debian Linux 2.2 allows local users to execute arbitrary code via long (1) -name and (2) -T arguments.

    Source:Christophe Bailleux
    Published:31 Dec 2001
    2.1
    Low

    CVE-2001-1560

    Last Modified: 7 Sept 2012

    Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service (system crash) by calling the ShowWindow function after receiving a WM_NCCREATE message.

    Source:PeterB
    Published:31 Dec 2001
    5.5
    Medium

    CVE-2001-1559

    Last Modified: 8 Sept 2012

    The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease function, which allows local users to cause a denial of service and trigger a null dereference.

    Source:Marco Peereboom
    Published:31 Dec 2001