Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 557

Количество 307 557

nvd логотип

CVE-2002-1775

больше 22 лет назад

NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus (NAV) 2002 allows remote attackers to bypass the initial virus scan and cause NAV to prematurely stop scanning by using a non-RFC compliant MIME header. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1774

больше 22 лет назад

NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus 2002 allows remote attackers to send viruses that bypass the e-mail scanning via a NULL character in the MIME header before the virus. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1773

больше 22 лет назад

Buffer overflow in ICQ 2.6x for MacOS X 10.0 through 10.1.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long request.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-1772

больше 22 лет назад

Novell Netware 5.0 through 5.1 may allow local users to gain "Domain Admin" rights by logging into a Novell Directory Services (NDS) account, and executing "net use" on an NDS_ADM account that is not in the NT domain but has domain access rights, which allows the user to enter a null password.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-1771

больше 22 лет назад

Matt Wright FormMail 1.9 and earlier allows remote attackers to send spam or anonymous e-mail by injecting a newline character followed by CC:, BCC:, or additional TO: fields in the email and realname CGI variables.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1770

больше 22 лет назад

Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in the My Computer zone by Internet Explorer.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1769

больше 22 лет назад

Microsoft Site Server 3.0 prior to SP4 installs a default user, LDAP_Anonymous, with a default password of LdapPassword_1, which allows remote attackers the "Log on locally" privilege.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-1768

больше 22 лет назад

Cisco IOS 11.1 through 12.2, when HSRP support is not enabled, allows remote attackers to cause a denial of service (CPU consumption) via randomly sized UDP packets to the Hot Standby Routing Protocol (HSRP) port 1985.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1767

больше 22 лет назад

Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as the oracle user via a long command line argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-1766

больше 22 лет назад

Buffer overflow in Composer in Netscape 4.77 allows local users to overwrite process memory and execute arbitrary code via a font tag with a long face attribute.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-1765

больше 22 лет назад

Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1764

больше 22 лет назад

acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2002-1763

больше 22 лет назад

The dtscreen Sun Solaris 8 CDE screensaver crashes when the "Shift" and "Return" keys are pressed repeatedly and quickly, which allows local users to access the current session.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-1762

больше 22 лет назад

Microsoft Baseline Security Analyzer (MBSA) 1.0 stores security scans in a known location C:\Documents and Settings\username\SecurityScans in plaintext, which could allow remote attackers to obtain sensitive information about the system via malicious active content such as ActiveX controls or Java.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1761

больше 22 лет назад

Directory traversal vulnerability in PHProjekt 2.0 through 3.1 allows remote attackers to read arbitrary files via .. (dot dot) sequences.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1760

больше 22 лет назад

Multiple SQL injection vulnerabilities in PHProjekt 2.0 through 3.1 allow remote attackers to execute arbitrary SQL commands via the unknown attack vectors.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1759

больше 22 лет назад

The upload function in PHProjekt 2.0 through 3.1 does not properly verify certain variables related to uploaded data, which allows remote attackers to cause PHProjekt to process arbitrary files.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1758

больше 22 лет назад

PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not verify if the user is logged in.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1757

больше 22 лет назад

PHProjekt 2.0 through 3.1 relies on the $PHP_SELF variable for authentication, which allows remote attackers to bypass authentication for scripts via a request to a .php file with "sms" in the URL, which is included in the PATH_INFO portion of the $PHP_SELF variable, as demonstrated using "mail_send.php/sms".

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1756

больше 22 лет назад

ACDSee 4.0 allows remote attackers to cause a denial of service (crash) via an .ais file with a long file description field, which is not properly handled when the file properties of the file are viewed.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-1775

NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus (NAV) 2002 allows remote attackers to bypass the initial virus scan and cause NAV to prematurely stop scanning by using a non-RFC compliant MIME header. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed

CVSS2: 7.5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1774

NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus 2002 allows remote attackers to send viruses that bypass the e-mail scanning via a NULL character in the MIME header before the virus. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed

CVSS2: 7.5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1773

Buffer overflow in ICQ 2.6x for MacOS X 10.0 through 10.1.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long request.

CVSS2: 7.5
29%
Средний
больше 22 лет назад
nvd логотип
CVE-2002-1772

Novell Netware 5.0 through 5.1 may allow local users to gain "Domain Admin" rights by logging into a Novell Directory Services (NDS) account, and executing "net use" on an NDS_ADM account that is not in the NT domain but has domain access rights, which allows the user to enter a null password.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1771

Matt Wright FormMail 1.9 and earlier allows remote attackers to send spam or anonymous e-mail by injecting a newline character followed by CC:, BCC:, or additional TO: fields in the email and realname CGI variables.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1770

Qualcomm Eudora 5.1 allows remote attackers to execute arbitrary code via an HTML e-mail message that uses a file:// URL in a t:video tag to reference an attached Windows Media Player file containing JavaScript code, which is launched and executed in the My Computer zone by Internet Explorer.

CVSS2: 5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1769

Microsoft Site Server 3.0 prior to SP4 installs a default user, LDAP_Anonymous, with a default password of LdapPassword_1, which allows remote attackers the "Log on locally" privilege.

CVSS2: 7.5
19%
Средний
больше 22 лет назад
nvd логотип
CVE-2002-1768

Cisco IOS 11.1 through 12.2, when HSRP support is not enabled, allows remote attackers to cause a denial of service (CPU consumption) via randomly sized UDP packets to the Hot Standby Routing Protocol (HSRP) port 1985.

CVSS2: 5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1767

Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as the oracle user via a long command line argument.

CVSS2: 7.2
8%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1766

Buffer overflow in Composer in Netscape 4.77 allows local users to overwrite process memory and execute arbitrary code via a font tag with a long face attribute.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1765

Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header.

CVSS2: 5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1764

acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 2.1
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1763

The dtscreen Sun Solaris 8 CDE screensaver crashes when the "Shift" and "Return" keys are pressed repeatedly and quickly, which allows local users to access the current session.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1762

Microsoft Baseline Security Analyzer (MBSA) 1.0 stores security scans in a known location C:\Documents and Settings\username\SecurityScans in plaintext, which could allow remote attackers to obtain sensitive information about the system via malicious active content such as ActiveX controls or Java.

CVSS2: 5
6%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1761

Directory traversal vulnerability in PHProjekt 2.0 through 3.1 allows remote attackers to read arbitrary files via .. (dot dot) sequences.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1760

Multiple SQL injection vulnerabilities in PHProjekt 2.0 through 3.1 allow remote attackers to execute arbitrary SQL commands via the unknown attack vectors.

CVSS2: 7.5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1759

The upload function in PHProjekt 2.0 through 3.1 does not properly verify certain variables related to uploaded data, which allows remote attackers to cause PHProjekt to process arbitrary files.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1758

PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not verify if the user is logged in.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1757

PHProjekt 2.0 through 3.1 relies on the $PHP_SELF variable for authentication, which allows remote attackers to bypass authentication for scripts via a request to a .php file with "sms" in the URL, which is included in the PATH_INFO portion of the $PHP_SELF variable, as demonstrated using "mail_send.php/sms".

CVSS2: 7.5
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-1756

ACDSee 4.0 allows remote attackers to cause a denial of service (crash) via an .ais file with a long file description field, which is not properly handled when the file properties of the file are viewed.

CVSS2: 5
1%
Низкий
больше 22 лет назад

Уязвимостей на страницу