275181
|
- |
|
steve_kneizys
|
agora.cgi
|
Agora.cgi 3.2r through 4.0 while in debug mode allows remote attackers to determine the full pathname of the agora.cgi file by requesting a non-existent .html file, which leaks the pathname in an err…
|
NVD-CWE-Other
|
CVE-2002-0215
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275182
|
- |
|
xoops
|
xoops
|
userinfo.php in XOOPS 1.0 RC1 allows remote attackers to obtain sensitive information via a SQL injection attack in the "uid" parameter.
|
NVD-CWE-Other
|
CVE-2002-0216
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275183
|
- |
|
xoops
|
xoops
|
Cross-site scripting (CSS) vulnerabilities in the Private Message System for XOOPS 1.0 RC1 allow remote attackers to execute Javascript on other web clients via (1) the Title field or a Private Messa…
|
NVD-CWE-Other
|
CVE-2002-0217
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275184
|
- |
|
sas
|
sas_base sas_integration_technologies
|
Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a …
|
NVD-CWE-Other
|
CVE-2002-0218
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275185
|
- |
|
sas
|
sas_base sas_integration_technologies
|
Buffer overflow in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via large command line argument.
|
NVD-CWE-Other
|
CVE-2002-0219
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275186
|
- |
|
phpsmssend
|
phpsmssend
|
phpsmssend.php in PhpSmsSend 1.0 allows remote attackers to execute arbitrary commands via an SMS message containing shell metacharacters.
|
NVD-CWE-Other
|
CVE-2002-0220
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275187
|
- |
|
etype
|
eserv
|
Etype Eserv 2.97 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of PASV commands that consume ports 1024 through 5000, which prevents the server from ac…
|
NVD-CWE-Other
|
CVE-2002-0221
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275188
|
- |
|
etype
|
eserv
|
Etype Eserv 2.97 allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.
|
NVD-CWE-Other
|
CVE-2002-0222
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275189
|
- |
|
infopop wired_community_software
|
ultimate_bulletin_board wwwthreads
|
Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through 5.0.9 allows remote attackers to upload arbitrary files by using a filename that contains an accepted extension, but ends i…
|
NVD-CWE-Other
|
CVE-2002-0223
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
275190
|
- |
|
microsoft
|
msn_messenger
|
Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more wh…
|
NVD-CWE-Other
|
CVE-2002-0228
|
2008-09-11 09:00 |
2002-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|