2,156 vulnerabilities published in 2002
Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 Routers, and possibly other products, allow remote attackers to gain se
Nevrona Designs MiraMail 1.04 and earlier stores authentication information such as POP usernames and passwords in plain
Directory traversal vulnerability in Funsoft Dino's Webserver 1.2 and earlier allows remote attackers to read files or e
Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable pe
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows
Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of se
Palm OS 3.5h and possibly other versions, as used in Handspring Visor and Xircom products, allows remote attackers to ca
Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers
Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attacke
Alcatel Speed Touch Home ADSL Modem allows remote attackers to cause a denial of service (reboot) via a network scan wit
Apple Palm Desktop 4.0b76 and 4.0b77 creates world-readable backup files and folders when a hotsync is performed, which
PHP 4.0 through 4.1.1 stores session IDs in temporary files whose name contains the session ID, which allows local users
Siemens 3568i WAP mobile phones allows remote attackers to cause a denial of service (crash) via an SMS message containi
MDG Computer Services Web Server 4D WS4D/eCommerce 3.0 and earlier, and possibly 3.5.3, allows remote attackers to cause
MDG Computer Services Web Server 4D/eCommerce 3.5.3 allows remote attackers to exploit directory traversal vulnerability
Buffer overflow in ClanLib library 0.5 may allow local users to execute arbitrary code in games that use the library, su
Buffer overflow in BlackMoon FTP Server 1.0 through 1.5 allows remote attackers to execute arbitrary code via a long arg
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26, when configured to block traffic below port 1024, allows remote a
cgitest.exe in Sambar Server 5.1 before Beta 4 allows remote attackers to cause a denial of service, and possibly execut
efax 0.9 and earlier, when installed setuid root, allows local users to read arbitrary files via the -d option, which pr
Buffer overflow in efax 0.9 and earlier, when installed setuid root, allows local users to execute arbitrary code via a
ActivePython ActiveX control for Python in the AXScript package, when used in Internet Explorer, does not prevent a scri
Buffer overflow in Chinput 3.0 allows local users to execute arbitrary code via a long HOME environment variable.
Buffer overflows in Avirt Gateway Suite 4.2 allow remote attackers to cause a denial of service and possibly execute arb
Telnet proxy in Avirt Gateway Suite 4.2 does not require authentication for connecting to the proxy system itself, which
Netopia Timbuktu Pro 6.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a series of conn
Microsoft Internet Explorer 5.5 on Windows 98 allows remote web pages to cause a denial of service (hang) via extremely
CDRDAO 1.1.4 and 1.1.5 allows local users to overwrite arbitrary files via a symlink attack on the $HOME/.cdrdao configu
CDRDAO 1.1.4 and 1.1.5 allows local users to read arbitrary files via the show-data command.
Pi-Soft SpoonFTP 1.1 and earlier allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the POR
Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and poss
Maelstrom GPL 3.0.1 allows local users to overwrite arbitrary files of other Maelstrom users via a symlink attack on the
CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash)
Buffer overflow in Eterm of Enlightenment Imlib2 1.0.4 and earlier allows local users to execute arbitrary code via a lo
Directory traversal vulnerability in chuid 1.2 and earlier allows remote attackers to change the ownership of files outs
chuid 1.2 and earlier does not properly verify the ownership of files that will be changed, which allows remote attacker
Heap-based buffer overflow in Squid before 2.4 STABLE4, and Squid 2.5 and 2.6 until March 12, 2002 distributions, allows
LogWatch before 2.5 allows local users to execute arbitrary code via a symlink attack on the logwatch temporary director
rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of ser
Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via th
The zone determination function in Microsoft Internet Explorer 5.5 and 6.0 allows remote attackers to run scripts in the
Intego FileGuard 4.0 uses weak encryption to store user information and passwords, which allows local users to gain priv
Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compi
Buffer overflow in Elm 2.5.5 and earlier allows remote attackers to execute arbitrary code via a long Message-ID header.
vipw in the util-linux package before 2.10 causes /etc/shadow to be world-readable in some cases, which would make it ea
Unknown vulnerability in IBM AIX Parallel Systems Support Programs (PSSP) 3.1.1, 3.2, and 3.4 allows remote attackers to
Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to obtain sensitive information via a r
Multiple cross-site scripting (XSS) vulnerabilities in Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows r
Buffer overflow in Xsun on Solaris 2.6 through 8 allows local users to gain root privileges via a long -co (color databa
Scan for 2002 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started