269361
|
- |
|
open_source_development_network
|
slashcode
|
Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and authentication information from other users via Javascript i…
|
NVD-CWE-Other
|
CVE-2002-0292
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269362
|
- |
|
alcatel-lucent
|
omnipcx
|
Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.
|
NVD-CWE-Other
|
CVE-2002-0294
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269363
|
- |
|
alcatel-lucent
|
omnipcx
|
Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.
|
NVD-CWE-Other
|
CVE-2002-0295
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269364
|
- |
|
nombas
|
scriptease_webserver
|
Buffer overflow in ScriptEase MiniWeb Server 0.95 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request.
|
NVD-CWE-Other
|
CVE-2002-0297
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269365
|
- |
|
nombas
|
scriptease_webserver
|
ScriptEase MiniWeb Server 0.95 allows remote attackers to cause a denial of service (crash) via certain HTTP GET requests containing (1) a %2e%2e (encoded dot-dot), (2) several /../ (dot dot) sequenc…
|
NVD-CWE-Other
|
CVE-2002-0298
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269366
|
- |
|
cnet
|
catchup
|
CNet CatchUp before 1.3.1 allows attackers to execute arbitrary code via a .RVP file that creates a file with an arbitrary extension (such as .BAT), which is executed during a scan.
|
NVD-CWE-Other
|
CVE-2002-0299
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269367
|
- |
|
gnujsp
|
gnujsp
|
gnujsp 1.0.0 and 1.0.1 allows remote attackers to list directories, read source code of certain scripts, and bypass access restrictions by directly requesting the target file from the gnujsp servlet,…
|
NVD-CWE-Other
|
CVE-2002-0300
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269368
|
- |
|
citrix
|
nfuse
|
Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_USER and NFUSE_PASSWORD parameters.
|
NVD-CWE-Other
|
CVE-2002-0301
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269369
|
- |
|
novell
|
groupwise
|
GroupWise 6, when using LDAP authentication and when Post Office has a blank username and password, allows attackers to gain privileges of other users by logging in without a password.
|
NVD-CWE-Other
|
CVE-2002-0303
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269370
|
- |
|
summit_computer_networks
|
lil_http_server
|
Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.
|
NVD-CWE-Other
|
CVE-2002-0304
|
2016-10-18 11:18 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|