Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 308 751

Количество 308 751

nvd логотип

CVE-2002-2367

больше 22 лет назад

Off-by-one buffer overflow in NEC SOCKS5 1.0 r11 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long hostname.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2366

больше 22 лет назад

Buffer overflow in the XML parser of Trillian 0.6351, 0.725 and 0.73 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a skin with a long colors file name in trillian.xml.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2002-2365

больше 22 лет назад

Simple WAIS (SWAIS) 1.11 allows remote attackers to execute arbitrary commands via the shell metacharacters in the search field, as demonstrated using the "|" (pipe) character.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-2364

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a help ticket.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2363

больше 22 лет назад

VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-2362

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary web script or HTML via the noticemsg parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2361

больше 22 лет назад

The installer in Yahoo! Messenger 4.0, 5.0 and 5.5 does not verify package signatures which could allow remote attackers to install trojan programs via DNS spoofing.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2002-2360

больше 22 лет назад

The RPC module in Webmin 0.21 through 0.99, when installed without root or admin privileges, allows remote attackers to read and write to arbitrary files and execute arbitrary commands via remote_foreign_require and remote_foreign_call requests.

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2002-2359

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote attackers to inject arbitrary web script or HTML via the title tag of an ftp URL.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2358

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in the FTP view feature in Opera 6.0 and 6.01 through 6.04 allows remote attackers to inject arbitrary web script or HTML via the title tag of an FTP URL.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2357

больше 22 лет назад

MailEnable 1.5 015 through 1.5 018 allows remote attackers to cause a denial of service (crash) via a long USER string, possibly due to a buffer overflow.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2356

больше 22 лет назад

HAMweather 2.x allows remote attackers to modify administrative settings and obtain sensitive information via a direct request to hwadmin.cgi.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-2355

больше 22 лет назад

Netgear FM114P firmware 1.3 wireless firewall, when configured to backup configuration information, stores DDNS (DynDNS) user name and password, MAC address filtering table and possibly other information in cleartext, which could allow local users to obtain sensitive information.

CVSS2: 7.1
EPSS: Низкий
nvd логотип

CVE-2002-2354

больше 22 лет назад

Netgear FM114P firmware 1.3 wireless firewall allows remote attackers to cause a denial of service (crash or hang) via a large number of TCP connection requests.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2002-2353

больше 22 лет назад

tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-2352

больше 22 лет назад

The NBActiveX.ocx ActiveX control in NeoBook 4 allows remote attackers to install and execute arbitrary programs.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2002-2351

больше 22 лет назад

Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-2350

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject arbitrary web script or HTML via the class parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2002-2349

больше 22 лет назад

phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environment information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-2348

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in athcgi.exe in Authoria HR allows remote attackers to inject arbitrary web script or HTML via the command parameter.

CVSS2: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-2367

Off-by-one buffer overflow in NEC SOCKS5 1.0 r11 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long hostname.

CVSS2: 7.8
8%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2366

Buffer overflow in the XML parser of Trillian 0.6351, 0.725 and 0.73 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a skin with a long colors file name in trillian.xml.

CVSS2: 6.8
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2365

Simple WAIS (SWAIS) 1.11 allows remote attackers to execute arbitrary commands via the shell metacharacters in the search field, as demonstrated using the "|" (pipe) character.

CVSS2: 10
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2364

Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a help ticket.

CVSS2: 4.3
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2363

VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.

CVSS2: 7.2
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2362

Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary web script or HTML via the noticemsg parameter.

CVSS2: 4.3
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2361

The installer in Yahoo! Messenger 4.0, 5.0 and 5.5 does not verify package signatures which could allow remote attackers to install trojan programs via DNS spoofing.

CVSS2: 5.8
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2360

The RPC module in Webmin 0.21 through 0.99, when installed without root or admin privileges, allows remote attackers to read and write to arbitrary files and execute arbitrary commands via remote_foreign_require and remote_foreign_call requests.

CVSS2: 9.3
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2359

Cross-site scripting (XSS) vulnerability in the FTP view feature in Mozilla 1.0 allows remote attackers to inject arbitrary web script or HTML via the title tag of an ftp URL.

CVSS2: 4.3
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2358

Cross-site scripting (XSS) vulnerability in the FTP view feature in Opera 6.0 and 6.01 through 6.04 allows remote attackers to inject arbitrary web script or HTML via the title tag of an FTP URL.

CVSS2: 4.3
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2357

MailEnable 1.5 015 through 1.5 018 allows remote attackers to cause a denial of service (crash) via a long USER string, possibly due to a buffer overflow.

CVSS2: 5
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2356

HAMweather 2.x allows remote attackers to modify administrative settings and obtain sensitive information via a direct request to hwadmin.cgi.

CVSS2: 6.4
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2355

Netgear FM114P firmware 1.3 wireless firewall, when configured to backup configuration information, stores DDNS (DynDNS) user name and password, MAC address filtering table and possibly other information in cleartext, which could allow local users to obtain sensitive information.

CVSS2: 7.1
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2354

Netgear FM114P firmware 1.3 wireless firewall allows remote attackers to cause a denial of service (crash or hang) via a large number of TCP connection requests.

CVSS2: 7.8
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2353

tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests.

CVSS2: 6.4
5%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2352

The NBActiveX.ocx ActiveX control in NeoBook 4 allows remote attackers to install and execute arbitrary programs.

CVSS2: 5.8
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2351

Eudora 5.1 allows remote attackers to bypass security warnings and possibly execute arbitrary code via attachments with names containing a trailing "." (dot).

CVSS2: 6.4
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2350

Cross-site scripting (XSS) vulnerability in z_user_show.php in dbtreelistproperty_method.php in Zorum 2.4 allows remote attackers to inject arbitrary web script or HTML via the class parameter.

CVSS2: 4.3
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2349

phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environment information.

CVSS2: 5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2002-2348

Cross-site scripting (XSS) vulnerability in athcgi.exe in Authoria HR allows remote attackers to inject arbitrary web script or HTML via the command parameter.

CVSS2: 4.3
1%
Низкий
больше 22 лет назад

Уязвимостей на страницу