Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 905

Количество 306 905

nvd логотип

CVE-2002-1601

больше 23 лет назад

The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2002-1600

больше 23 лет назад

Directory traversal vulnerability in Mike Spice's My Classifieds (classifieds.cgi) before 1.3 allows remote attackers to overwrite arbitrary files via the category parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1599

около 23 лет назад

DansGuardian before 2.4.5-1 allows remote attackers to bypass content filtering rules via hex-encoded URLs.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1598

больше 23 лет назад

Buffer overflows in Computer Associates MLink (CA-MLink) 6.5 and earlier may allow local users to execute arbitrary code via long command line arguments to (1) mlclear or (2) mllock.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-1597

больше 23 лет назад

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (halt) via a fragmented packet to the Gigabit interface.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1596

больше 23 лет назад

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (router crash) via an HTTP request with large headers.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1595

больше 23 лет назад

Cisco SN 5420 Storage Router 1.1(5) and earlier allows attackers to read configuration files without authorization.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1594

больше 23 лет назад

Buffer overflow in (1) grpck and (2) pwck, if installed setuid on a system as recommended in some AIX documentation, may allow local users to gain privileges via a long command line argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-1593

почти 23 года назад

mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a child process via a null dereference and cause a denial of service (CPU consumption) in a preforked multi-processing module.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2002-1592

больше 23 лет назад

The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1591

больше 23 лет назад

AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allow code from free.aol.com to bypass intended access restrictions.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1590

почти 23 года назад

The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Solaris 8 Update 1/01 or later, install files with world or group write permissions, which allows local users to gain root privileges or cause a denial of service.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-1589

почти 23 года назад

Unknown vulnerability in Solaris 8, when the 0x02 bit (aka TEST, KMF_DEADBEEF, or deadbeef) is set in the kmem_flags kernel parameter, allows local users to cause a denial of service (system panic).

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2002-1588

почти 23 года назад

Mailtool for OpenWindows 3.6, 3.6.1, and 3.6.2 allows remote attackers to cause a denial of service (mailtool segmentation violation and crash) via a malformed mail attachment.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1587

почти 23 года назад

The libthread library (libthread.so.1) for Solaris 2.5.1 through 8 allows local users to cause a denial of service (hang) of an application that uses libthread by causing the application to wait for a certain mutex.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2002-1586

почти 23 года назад

Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2002-1585

почти 23 года назад

Unknown vulnerability in Solaris 8 for Intel and Solaris 8 and 9 for SPARC allows remote attackers to cause a denial of service via certain packets that cause some network interfaces to stop responding to TCP traffic.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1584

больше 22 лет назад

Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-1583

почти 21 год назад

Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long username that is read from a file descriptor argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-1582

почти 21 год назад

compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers to execute arbitrary commands via shell metacharacters in the RealEmail configuration variable, which is used to call Sendmail in network.cgi.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-1601

The Connectables feature in Adobe PhotoDeluxe 3.1 prepends the Adobe directory to the CLASSPATH environment variable, which allows applets to run with higher privileges and remote attackers to gain privileges via an HTML e-mail message or a web page.

CVSS2: 5.1
3%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1600

Directory traversal vulnerability in Mike Spice's My Classifieds (classifieds.cgi) before 1.3 allows remote attackers to overwrite arbitrary files via the category parameter.

CVSS2: 5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1599

DansGuardian before 2.4.5-1 allows remote attackers to bypass content filtering rules via hex-encoded URLs.

CVSS2: 7.5
1%
Низкий
около 23 лет назад
nvd логотип
CVE-2002-1598

Buffer overflows in Computer Associates MLink (CA-MLink) 6.5 and earlier may allow local users to execute arbitrary code via long command line arguments to (1) mlclear or (2) mllock.

CVSS2: 4.6
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1597

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (halt) via a fragmented packet to the Gigabit interface.

CVSS2: 5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1596

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (router crash) via an HTTP request with large headers.

CVSS2: 5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1595

Cisco SN 5420 Storage Router 1.1(5) and earlier allows attackers to read configuration files without authorization.

CVSS2: 5
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1594

Buffer overflow in (1) grpck and (2) pwck, if installed setuid on a system as recommended in some AIX documentation, may allow local users to gain privileges via a long command line argument.

CVSS2: 7.2
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1593

mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a child process via a null dereference and cause a denial of service (CPU consumption) in a preforked multi-processing module.

CVSS2: 5
39%
Средний
почти 23 года назад
nvd логотип
CVE-2002-1592

The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.

CVSS2: 5
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1591

AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allow code from free.aol.com to bypass intended access restrictions.

CVSS2: 7.5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-1590

The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Solaris 8 Update 1/01 or later, install files with world or group write permissions, which allows local users to gain root privileges or cause a denial of service.

CVSS2: 7.2
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1589

Unknown vulnerability in Solaris 8, when the 0x02 bit (aka TEST, KMF_DEADBEEF, or deadbeef) is set in the kmem_flags kernel parameter, allows local users to cause a denial of service (system panic).

CVSS2: 2.1
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1588

Mailtool for OpenWindows 3.6, 3.6.1, and 3.6.2 allows remote attackers to cause a denial of service (mailtool segmentation violation and crash) via a malformed mail attachment.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1587

The libthread library (libthread.so.1) for Solaris 2.5.1 through 8 allows local users to cause a denial of service (hang) of an application that uses libthread by causing the application to wait for a certain mutex.

CVSS2: 2.1
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1586

Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.

CVSS2: 2.1
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1585

Unknown vulnerability in Solaris 8 for Intel and Solaris 8 and 9 for SPARC allows remote attackers to cause a denial of service via certain packets that cause some network interfaces to stop responding to TCP traffic.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1584

Unknown vulnerability in the AUTH_DES authentication for RPC in Solaris 2.5.1, 2.6, and 7, SGI IRIX 6.5 to 6.5.19f, and possibly other platforms, allows remote attackers to gain privileges.

CVSS2: 10
5%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1583

Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long username that is read from a file descriptor argument.

CVSS2: 7.2
0%
Низкий
почти 21 год назад
nvd логотип
CVE-2002-1582

compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers to execute arbitrary commands via shell metacharacters in the RealEmail configuration variable, which is used to call Sendmail in network.cgi.

CVSS2: 10
1%
Низкий
почти 21 год назад

Уязвимостей на страницу