Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 308 633

Количество 308 633

nvd логотип

CVE-2002-2309

больше 22 лет назад

php.exe in PHP 3.0 through 4.2.2, when running on Apache, does not terminate properly, which allows remote attackers to cause a denial of service via a direct request without arguments.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2308

больше 22 лет назад

Netscape Communicator 6.2.1 allows remote attackers to cause a denial of service in client browsers via a webpage containing a recursive META refresh tag where the content tag is blank and the URL tag references itself.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2307

больше 22 лет назад

The default configuration of BenHur Firewall release 3 update 066 fix 2 allows remote attackers to access arbitrary services by connecting from source port 20.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2306

больше 22 лет назад

Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sending several large messages.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2305

больше 22 лет назад

SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands via the (1) agentname or (2) agentpassword parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-2304

больше 22 лет назад

SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to execute arbitrary SQL commands via the idsession parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-2303

больше 22 лет назад

3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2302

больше 22 лет назад

3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-2301

больше 22 лет назад

Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto the database.

CVSS2: 3.3
EPSS: Низкий
nvd логотип

CVE-2002-2300

больше 22 лет назад

Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash) via a long CEL command.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-2299

больше 22 лет назад

PHP remote file inclusion vulnerability in thatfile.php in Thatware 0.3 through 0.5.2 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2002-2298

больше 22 лет назад

PHP remote file inclusion vulnerability in config.php in Thatware 0.3 through 0.5.3 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2002-2297

больше 22 лет назад

PHP remote file inclusion vulnerability in artlist.php in Thatware 0.5.2 and 0.5.3 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2002-2296

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in YaBB.pl in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 allows remote attackers to inject arbitrary web script or HTML via the num parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2295

больше 22 лет назад

Buffer overflow in Pico Server (pServ) 2.0 beta 1 through beta 5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a 1024-byte TCP stream message, which triggers an off-by-one buffer overflow, or (2) a long method name in an HTTP request, (3) a long version number in an HTTP request, (4) a long User-Agent header, or (5) a long file path.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-2294

больше 22 лет назад

Multiple buffer overflows in Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor 500/700/1000 and 1100/1200/1300, and Gateway Security 5110/5200/5300 allow remote attackers to cause a denial of service (service termination) via (1) malformed RealAudio (rad) packets that are not properly handled by the RealAudio Proxy, or (2) crafted packets to the statistics service (statsd).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2293

больше 22 лет назад

Webshots Desktop screensaver allows local users to bypass the password on the screensaver by pressing CTRL-ALT-DELETE and (1) hitting the cancel button or (2) killing the screensaver from the task manager.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-2292

больше 22 лет назад

Directory traversal vulnerability in Remote Console Applet in Halycon Software iASP 1.0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP request to port 9095.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2291

больше 22 лет назад

Calisto Internet Talker 0.04 and earlier allows remote attackers to cause a denial of service (hang) via a long request, possibly triggering a buffer overflow.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2290

больше 22 лет назад

Mambo Site Server 4.0.11 installs with a default username and password of admin, which allows remote attackers to gain privileges.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-2309

php.exe in PHP 3.0 through 4.2.2, when running on Apache, does not terminate properly, which allows remote attackers to cause a denial of service via a direct request without arguments.

CVSS2: 7.8
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2308

Netscape Communicator 6.2.1 allows remote attackers to cause a denial of service in client browsers via a webpage containing a recursive META refresh tag where the content tag is blank and the URL tag references itself.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2307

The default configuration of BenHur Firewall release 3 update 066 fix 2 allows remote attackers to access arbitrary services by connecting from source port 20.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2306

Sharman Networks KaZaA Media Desktop 1.7.1 allows remote attackers to cause a denial of service (CPU consumption) by sending several large messages.

CVSS2: 7.8
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2305

SQL injection vulnerability in agentadmin.php in Immobilier allows remote attackers to execute arbitrary SQL commands via the (1) agentname or (2) agentpassword parameter.

CVSS2: 7.5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2304

SQL injection vulnerability in admin/auth/checksession.php in MyPHPLinks 2.1.9 and 2.2.0 allows remote attackers to execute arbitrary SQL commands via the idsession parameter.

CVSS2: 7.5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2303

3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data.

CVSS2: 7.8
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2302

3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field.

CVSS2: 6.4
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2301

Lawson Financials 8.0, when configured to use a third party relational database, stores usernames and passwords in a world-readable file, which allows local users to read the passwords and log onto the database.

CVSS2: 3.3
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2300

Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash) via a long CEL command.

CVSS2: 7.5
20%
Средний
больше 22 лет назад
nvd логотип
CVE-2002-2299

PHP remote file inclusion vulnerability in thatfile.php in Thatware 0.3 through 0.5.2 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2298

PHP remote file inclusion vulnerability in config.php in Thatware 0.3 through 0.5.3 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2297

PHP remote file inclusion vulnerability in artlist.php in Thatware 0.5.2 and 0.5.3 allows remote attackers to execute arbitrary PHP code via the root_path parameter.

CVSS2: 6.8
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2296

Cross-site scripting (XSS) vulnerability in YaBB.pl in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 allows remote attackers to inject arbitrary web script or HTML via the num parameter.

CVSS2: 4.3
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2295

Buffer overflow in Pico Server (pServ) 2.0 beta 1 through beta 5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a 1024-byte TCP stream message, which triggers an off-by-one buffer overflow, or (2) a long method name in an HTTP request, (3) a long version number in an HTTP request, (4) a long User-Agent header, or (5) a long file path.

CVSS2: 7.5
23%
Средний
больше 22 лет назад
nvd логотип
CVE-2002-2294

Multiple buffer overflows in Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor 500/700/1000 and 1100/1200/1300, and Gateway Security 5110/5200/5300 allow remote attackers to cause a denial of service (service termination) via (1) malformed RealAudio (rad) packets that are not properly handled by the RealAudio Proxy, or (2) crafted packets to the statistics service (statsd).

CVSS2: 5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2293

Webshots Desktop screensaver allows local users to bypass the password on the screensaver by pressing CTRL-ALT-DELETE and (1) hitting the cancel button or (2) killing the screensaver from the task manager.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2292

Directory traversal vulnerability in Remote Console Applet in Halycon Software iASP 1.0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP request to port 9095.

CVSS2: 5
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2291

Calisto Internet Talker 0.04 and earlier allows remote attackers to cause a denial of service (hang) via a long request, possibly triggering a buffer overflow.

CVSS2: 7.8
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2290

Mambo Site Server 4.0.11 installs with a default username and password of admin, which allows remote attackers to gain privileges.

CVSS2: 10
1%
Низкий
больше 22 лет назад

Уязвимостей на страницу