|
344451
|
4.6 |
MEDIUM
|
gnu
|
screen
|
Buffer overflow in the Braille module for GNU screen 3.9.11, when HAVE_BRAILLE is defined, allows local users to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2002-1602
|
2017-07-11 10:29 |
2002-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344452
|
5.0 |
MEDIUM
|
goahead_software
|
goahead_webserver
|
GoAhead Web Server 2.1.7 and earlier allows remote attackers to obtain the source code of ASP files via a URL terminated with a /, \, %2f (encoded /), %20 (encoded space), or %00 (encoded null) chara…
|
NVD-CWE-Other
|
CVE-2002-1603
|
2017-07-11 10:29 |
2002-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344453
|
7.5 |
HIGH
|
hp
|
hp-ux tru64
|
Multiple buffer overflows in HP Tru64 UNIX allow local and possibly remote attackers to execute arbitrary code via a long NLSPATH environment variable to (1) csh, (2) dtsession, (3) dxsysinfo, (4) im…
|
NVD-CWE-Other
|
CVE-2002-1604
|
2017-07-11 10:29 |
2002-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344454
|
7.5 |
HIGH
|
hp
|
hp-ux tru64
|
Buffer overflow in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows attackers to execute arbitrary code via a long _XKB_CHARSET environment variable to (1) dxpause, (2) dxconsole, or (3) dtsessio…
|
NVD-CWE-Other
|
CVE-2002-1605
|
2017-07-11 10:29 |
2002-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344455
|
4.6 |
MEDIUM
|
hp
|
hp-ux tru64
|
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain privileges via (1) lpc, (2) lpd, (3) lpq, (4) lpr, or (5) lprm.
|
NVD-CWE-Other
|
CVE-2002-1606
|
2017-07-11 10:29 |
2002-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344456
|
4.6 |
MEDIUM
|
hp
|
hp-ux tru64
|
Buffer overflow in ypmatch in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2002-1607
|
2017-07-11 10:29 |
2002-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344457
|
4.6 |
MEDIUM
|
hp
|
hp-ux tru64
|
Buffer overflow in traceroute in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2002-1608
|
2017-07-11 10:29 |
2002-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344458
|
4.6 |
MEDIUM
|
hp
|
hp-ux tru64
|
Buffer overflow in binmail in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2002-1609
|
2017-07-11 10:29 |
2002-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344459
|
2.1 |
LOW
|
hp
|
hp-ux tru64
|
Unknown vulnerability in ping in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to cause a denial of service.
|
NVD-CWE-Other
|
CVE-2002-1610
|
2017-07-11 10:29 |
2002-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344460
|
4.6 |
MEDIUM
|
hp
|
hp-ux tru64
|
Buffer overflow in quot in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2002-1611
|
2017-07-11 10:29 |
2002-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344461
|
7.2 |
HIGH
|
hp
|
hp-ux tru64
|
Buffer overflow in mailcv in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2002-1612
|
2017-07-11 10:29 |
2002-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344462
|
7.2 |
HIGH
|
hp
|
hp-ux tru64
|
Buffer overflow in ps in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2002-1613
|
2017-07-11 10:29 |
2002-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344463
|
7.2 |
HIGH
|
hp
|
hp-ux tru64
|
Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at.
|
NVD-CWE-Other
|
CVE-2002-1614
|
2017-07-11 10:29 |
2002-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344464
|
7.2 |
HIGH
|
hp
|
hp-ux tru64
|
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to execute arbitrary code via (1) msgchk or (2) .upd..loader.
|
NVD-CWE-Other
|
CVE-2002-1615
|
2017-07-11 10:29 |
2002-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344465
|
7.2 |
HIGH
|
hp
|
tru64
|
Multiple buffer overflows in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allow local users to gain root privileges via (1) su, (2) chsh, (3) passwd, (4) chfn, (5) dxchpwd, and (6) libc.
|
NVD-CWE-Other
|
CVE-2002-1616
|
2017-07-11 10:29 |
2002-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344466
|
5.0 |
MEDIUM
|
ibm
|
aix
|
Buffer overflow in the FC client for IBM AIX 4.3.x allows remote attackers to cause a denial of service (crash and core dump).
|
NVD-CWE-Other
|
CVE-2002-1619
|
2017-07-11 10:29 |
2002-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344467
|
5.0 |
MEDIUM
|
ibm
|
aix_parallel_systems_support_programs
|
Unknown vulnerability in IBM AIX Parallel Systems Support Programs (PSSP) 3.1.1, 3.2, and 3.4 allows remote attackers to read arbitrary files from a file collection.
|
NVD-CWE-Other
|
CVE-2002-1620
|
2017-07-11 10:29 |
2002-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344468
|
7.5 |
HIGH
|
ibm
|
aix
|
Buffer overflow in certain RPC routines in IBM AIX 4.3 may allow attackers to execute arbitrary code, related to a "variable data type."
|
NVD-CWE-Other
|
CVE-2002-1622
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344469
|
5.0 |
MEDIUM
|
checkpoint
|
vpn-1_firewall-1
|
The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, does not encrypt initiator or responder identities during negotiation, which may a…
|
NVD-CWE-Other
|
CVE-2002-1623
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344470
|
5.0 |
MEDIUM
|
ibm
|
lotus_domino
|
Buffer overflow in Lotus Domino web server before R5.0.10, when logging to DOMLOG.NSF, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP…
|
NVD-CWE-Other
|
CVE-2002-1624
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344471
|
5.0 |
MEDIUM
|
macromedia
|
flash_player
|
Macromedia Flash Player 6 does not terminate connections when the user leaves the web page, which allows remote attackers to cause a denial of service (bandwidth, resource, and CPU consumption) via t…
|
NVD-CWE-Other
|
CVE-2002-1625
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344472
|
5.0 |
MEDIUM
|
mike_spice
|
my_calendar
|
Directory traversal vulnerability in Mike Spice My Calendar before 1.5 allows remote attackers to write arbitrary files via .. (dot dot) sequences in a URL.
|
NVD-CWE-Other
|
CVE-2002-1626
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344473
|
5.0 |
MEDIUM
|
mike_spice
|
quiz_me
|
Directory traversal vulnerability in quiz.cgi for Mike Spice Quiz Me! before 0.6 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the quiz parameter.
|
NVD-CWE-Other
|
CVE-2002-1627
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344474
|
5.0 |
MEDIUM
|
mike_spice
|
mikes_vote_cgi
|
Directory traversal vulnerability in vote.cgi for Mike Spice Mike's Vote CGI before 1.3 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the type parameter.
|
NVD-CWE-Other
|
CVE-2002-1628
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344475
|
10.0 |
HIGH
|
multi-tech
|
proxyserver
|
Multi-Tech ProxyServer products MTPSR1-100, MTPSR1-120, MTPSR1-202ST, MTPSR2-201, and MTPSR3-200 ship with a null password, which allows remote attackers to gain administrative privileges via Telnet …
|
NVD-CWE-Other
|
CVE-2002-1629
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344476
|
7.5 |
HIGH
|
oracle
|
application_server
|
The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.
|
NVD-CWE-Other
|
CVE-2002-1630
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344477
|
6.4 |
MEDIUM
|
oracle
|
application_server
|
Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo…
|
NVD-CWE-Other
|
CVE-2002-1632
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344478
|
4.6 |
MEDIUM
|
qnx
|
qnx_rtos
|
Multiple buffer overflows in QNX 4.25 may allow local users to execute arbitrary code via long command line arguments to (1) sample, (2) ex, (3) du, (4) find, (5) lex, (6) mkdir, (7) rm, (8) serserv,…
|
NVD-CWE-Other
|
CVE-2002-1633
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344479
|
5.0 |
MEDIUM
|
novell
|
netware
|
Novell NetWare 5.1 installs sample applications that allow remote attackers to obtain sensitive information via (1) ndsobj.nlm, (2) allfield.jse, (3) websinfo.bas, (4) ndslogin.pl, (5) volscgi.pl, (6…
|
NVD-CWE-Other
|
CVE-2002-1634
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344480
|
5.0 |
MEDIUM
|
oracle
|
application_server
|
The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl directory instead of a ScriptAlias, which allows remote attackers to read the source …
|
NVD-CWE-Other
|
CVE-2002-1635
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344481
|
4.3 |
MEDIUM
|
oracle
|
application_server
|
Cross-site scripting (XSS) vulnerability in the htp PL/SQL package for Oracle 9i Application Server (9iAS) allows remote attackers to inject arbitrary web script or HTML via the cbuf parameter to htp…
|
NVD-CWE-Other
|
CVE-2002-1636
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344482
|
4.6 |
MEDIUM
|
oracle
|
application_server
|
Multiple components in Oracle 9i Application Server (9iAS) are installed with over 160 default usernames and passwords, including (1) SYS, (2) SYSTEM, (3) AQJAVA, (4) OWA, (5) IMAGEUSER, (6) USER1, (…
|
NVD-CWE-noinfo
|
CVE-2002-1637
|
2017-07-11 10:29 |
2002-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344483
|
7.2 |
HIGH
|
postgresql
|
postgresql
|
PostgreSQL 7.2.1 and 7.2.2 allows local users to delete transaction log (pg_clog) data and cause a denial of service (data loss) via the VACUUM command.
|
NVD-CWE-Other
|
CVE-2002-1642
|
2017-07-11 10:29 |
2002-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344484
|
7.2 |
HIGH
|
ssh
|
ssh2
|
SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to remove the child process from the process group of the par…
|
NVD-CWE-Other
|
CVE-2002-1644
|
2017-07-11 10:29 |
2002-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344485
|
10.0 |
HIGH
|
ssh
|
ssh2
|
Buffer overflow in the URL catcher feature for SSH Secure Shell for Workstations client 3.1 to 3.2.0 allows remote attackers to execute arbitrary code via a long URL.
|
NVD-CWE-Other
|
CVE-2002-1645
|
2017-07-11 10:29 |
2002-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344486
|
10.0 |
HIGH
|
ssh
|
ssh2
|
SSH Secure Shell Windows client versions 3.1.5 and 3.2.2 the URL handling mechanism has been fixed so that the maximum URL length is checked and enforced.
|
NVD-CWE-Other
|
CVE-2002-1645
|
2017-07-11 10:29 |
2002-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344487
|
7.5 |
HIGH
|
ssh
|
secure_shell_for_servers
|
SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration and use less secure authentication schemes (e.g. password) than configured for…
|
NVD-CWE-Other
|
CVE-2002-1646
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344488
|
7.5 |
HIGH
|
squirrelmail
|
squirrelmail
|
Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail before 1.2.3 allows remote attackers to send email as other users via an IMG URL with modified send_to and subject param…
|
NVD-CWE-Other
|
CVE-2002-1648
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344489
|
4.3 |
MEDIUM
|
squirrelmail
|
squirrelmail
|
Cross-site scripting (XSS) vulnerability in read_body.php in SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary Javascript via a javascript: URL in an IMG tag.
|
NVD-CWE-Other
|
CVE-2002-1649
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344490
|
7.5 |
HIGH
|
squirrelmail
|
squirrelmail
|
The spell checker plugin (check_me.mod.php) for SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary commands via a modified sqspell_command parameter.
|
NVD-CWE-Other
|
CVE-2002-1650
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344491
|
4.3 |
MEDIUM
|
verity
|
search97
|
Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error m…
|
CWE-79
Cross-site Scripting
|
CVE-2002-1651
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344492
|
7.5 |
HIGH
|
mit
|
cgiemail
|
Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter.
|
NVD-CWE-Other
|
CVE-2002-1652
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344493
|
5.0 |
MEDIUM
|
farm9
|
cryptcat
|
Farm9 Cryptcat, when started in server mode with the -e option, does not enable encryption, which allows clients to communicate without encryption despite intended configuration, and may allow remote…
|
NVD-CWE-Other
|
CVE-2002-1653
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344494
|
7.5 |
HIGH
|
iplanet netscape
|
iplanet_web_server enterprise_server
|
iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provid…
|
NVD-CWE-Other
|
CVE-2002-1654
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344495
|
5.0 |
MEDIUM
|
iplanet netscape
|
iplanet_web_server enterprise_server
|
The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause a denial of service (crash) via a wp-html-rend request.
|
NVD-CWE-Other
|
CVE-2002-1655
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344496
|
7.5 |
HIGH
|
xqus
|
x-news
|
X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cook…
|
NVD-CWE-Other
|
CVE-2002-1656
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344497
|
4.6 |
MEDIUM
|
apache
|
http_server
|
Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setui…
|
NVD-CWE-Other
|
CVE-2002-1658
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344498
|
10.0 |
HIGH
|
iatek
|
portalapp
|
user_profile.asp in PortalApp 2.2 allows local users to gain privileges by modifying the user_id variable.
|
NVD-CWE-Other
|
CVE-2002-1659
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344499
|
7.5 |
HIGH
|
jelsoft
|
vbulletin
|
calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter.
|
CWE-78
OS Command
|
CVE-2002-1660
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344500
|
5.0 |
MEDIUM
|
leafnode
|
leafnode
|
The leafnode server in leafnode 1.9.20 to 1.9.29 allows remote attackers to cause a denial of service (infinite loop) when leafnode requests a cross-posted article to one group whose name is a prefix…
|
NVD-CWE-Other
|
CVE-2002-1661
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|