267441
|
- |
|
squirrelmail
|
squirrelmail
|
The spell checker plugin (check_me.mod.php) for SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary commands via a modified sqspell_command parameter.
|
NVD-CWE-Other
|
CVE-2002-1650
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267442
|
- |
|
verity
|
search97
|
Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error m…
|
CWE-79
Cross-site Scripting
|
CVE-2002-1651
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267443
|
- |
|
mit
|
cgiemail
|
Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter.
|
NVD-CWE-Other
|
CVE-2002-1652
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267444
|
- |
|
farm9
|
cryptcat
|
Farm9 Cryptcat, when started in server mode with the -e option, does not enable encryption, which allows clients to communicate without encryption despite intended configuration, and may allow remote…
|
NVD-CWE-Other
|
CVE-2002-1653
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267445
|
- |
|
iplanet netscape
|
iplanet_web_server enterprise_server
|
iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provid…
|
NVD-CWE-Other
|
CVE-2002-1654
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267446
|
- |
|
iplanet netscape
|
iplanet_web_server enterprise_server
|
The Web Publishing feature in Netscape Enterprise Server 3.x and iPlanet Web Server 4.x allows remote attackers to cause a denial of service (crash) via a wp-html-rend request.
|
NVD-CWE-Other
|
CVE-2002-1655
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267447
|
- |
|
xqus
|
x-news
|
X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cook…
|
NVD-CWE-Other
|
CVE-2002-1656
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267448
|
- |
|
apache
|
http_server
|
Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow attackers to execute arbitrary code via a long user argument. NOTE: since htdigest is normally only locally accessible and not setui…
|
NVD-CWE-Other
|
CVE-2002-1658
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267449
|
- |
|
iatek
|
portalapp
|
user_profile.asp in PortalApp 2.2 allows local users to gain privileges by modifying the user_id variable.
|
NVD-CWE-Other
|
CVE-2002-1659
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267450
|
- |
|
jelsoft
|
vbulletin
|
calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter.
|
CWE-78
OS Command
|
CVE-2002-1660
|
2017-07-11 10:29 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|