267571
|
- |
|
stefan_holmberg
|
admentor
|
admin.asp in AdMentor 2.11 allows remote attackers to bypass authentication and gain privileges via a SQL injection attack on the Login and Password arguments.
|
NVD-CWE-Other
|
CVE-2002-0308
|
2017-07-11 10:29 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267572
|
- |
|
netwin
|
webnews
|
Netwin WebNews 1.1k CGI program includes several default usernames and cleartext passwords that cannot be deleted by the administrator, which allows remote attackers to gain privileges via the userna…
|
NVD-CWE-Other
|
CVE-2002-0310
|
2017-07-11 10:29 |
2002-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267573
|
- |
|
ecometry
|
sgdynamo
|
Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter.
|
NVD-CWE-Other
|
CVE-2002-0375
|
2017-07-11 10:29 |
2002-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267574
|
- |
|
vignette
|
storyserver vignette
|
Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '"' (double quote) and and '>' characters, which causes the TCL…
|
NVD-CWE-Other
|
CVE-2002-0385
|
2017-07-11 10:29 |
2004-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267575
|
- |
|
red-m
|
1050ap_lan_acess_point
|
Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration pass…
|
NVD-CWE-Other
|
CVE-2002-0393
|
2017-07-11 10:29 |
2002-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267576
|
- |
|
workforceroi
|
xpede
|
Intellisol Xpede 4.1 uses weak encryption to store authentication information in cookies, which could allow local users with access to the cookies to gain privileges.
|
NVD-CWE-Other
|
CVE-2002-0486
|
2017-07-11 10:29 |
2002-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267577
|
- |
|
inn
|
inn
|
Vulnerability in (1) inews or (2) rnews for INN 2.2.3 and earlier, related to insecure open() calls.
|
NVD-CWE-Other
|
CVE-2002-0526
|
2017-07-11 10:29 |
2002-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267578
|
- |
|
postboard postnuke_software_foundation
|
postboard postnuke
|
Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title.
|
NVD-CWE-Other
|
CVE-2002-0535
|
2017-07-11 10:29 |
2002-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267579
|
- |
|
oracle
|
application_server application_server_web_cache oracle8i oracle9i
|
The default configuration of Oracle 9i Application Server 1.0.2.x allows remote anonymous users to access sensitive services without authentication, including Dynamic Monitoring Services (1) dms0, (2…
|
CWE-287
Improper Authentication
|
CVE-2002-0563
|
2017-07-11 10:29 |
2002-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267580
|
- |
|
aol
|
instant_messenger
|
AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the i…
|
NVD-CWE-Other
|
CVE-2002-0592
|
2017-07-11 10:29 |
2002-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|