270501
|
- |
|
jetty
|
jetty_http_server
|
Directory traversal vulnerability in the CGIServlet for Jetty HTTP server before 4.1.0 allows remote attackers to execute arbitrary commands via ..\ (dot-dot backslash) sequences in an HTTP request t…
|
NVD-CWE-Other
|
CVE-2002-1178
|
2016-10-18 11:24 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270502
|
- |
|
sabre
|
desktop_reservation_software
|
The Sabserv client component in Sabre Desktop Reservation Software 4.2 through 4.4 allows remote attackers to cause a denial of service via malformed input to TCP port 1001.
|
NVD-CWE-Other
|
CVE-2002-1191
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270503
|
- |
|
gabriele_bartolini
|
ht_check
|
Cross-site scripting vulnerability (XSS) in the PHP interface for ht://Check 1.1 allows remote web servers to insert arbitrary HTML, including script, via a web page.
|
NVD-CWE-Other
|
CVE-2002-1195
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270504
|
- |
|
mozilla
|
bugzilla
|
editproducts.cgi in Bugzilla 2.14.x before 2.14.4, and 2.16.x before 2.16.1, when the "usebuggroups" feature is enabled and more than 47 groups are specified, does not properly calculate bit values f…
|
NVD-CWE-Other
|
CVE-2002-1196
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270505
|
- |
|
mozilla
|
bugzilla
|
bugzilla_email_append.pl in Bugzilla 2.14.x before 2.14.4, and 2.16.x before 2.16.1, allows remote attackers to execute arbitrary code via shell metacharacters in a system call to processmail.
|
NVD-CWE-Other
|
CVE-2002-1197
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270506
|
- |
|
mozilla
|
bugzilla
|
Bugzilla 2.16.x before 2.16.1 does not properly filter apostrophes from an email address during account creation, which allows remote attackers to execute arbitrary SQL via a SQL injection attack.
|
NVD-CWE-Other
|
CVE-2002-1198
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270507
|
- |
|
ibm
|
aix
|
IBM AIX 4.3.3 and AIX 5 allows remote attackers to cause a denial of service (CPU consumption or crash) via a flood of malformed TCP packets without any flags set, which prevents AIX from releasing t…
|
NVD-CWE-Other
|
CVE-2002-1201
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270508
|
- |
|
ibm
|
secureway_firewall
|
IBM SecureWay Firewall before 4.2.2 performs extra processing before determining that a packet is invalid and dropping it, which allows remote attackers to cause a denial of service (resource exhaust…
|
CWE-399
Resource Management Errors
|
CVE-2002-1203
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270509
|
- |
|
jason_orcutt
|
prometheus
|
Prometheus 6.0 and earlier allows remote attackers to execute arbitrary PHP code via a modified PROMETHEUS_LIBRARY_BASE that points to code stored on a remote server, which is then used in (1) index.…
|
NVD-CWE-Other
|
CVE-2002-1211
|
2016-10-18 11:24 |
2002-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270510
|
- |
|
gnu
|
tar
|
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security che…
|
NVD-CWE-Other
|
CVE-2002-1216
|
2016-10-18 11:24 |
2002-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|