Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 557

Количество 307 557

nvd логотип

CVE-2002-1059

почти 23 года назад

Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execute arbitrary code via a long SSH1 protocol version string.

CVSS2: 7.5
EPSS: Высокий
nvd логотип

CVE-2002-1058

почти 23 года назад

Directory traversal vulnerability in splashAdmin.php for Cobalt Qube 3.0 allows local users and remote attackers, to gain privileges as the Qube Admin via .. (dot dot) sequences in the sessionId cookie that point to an alternate session file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-1057

почти 23 года назад

Buffer overflow in SmartMax MailMax POP3 daemon (popmax) 4.8 allows remote attackers to execute arbitrary code via a long USER command.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1056

больше 23 лет назад

Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-1055

почти 23 года назад

Buffer overflow in administrative web server for Brother NC-3100h printer allows remote attackers to cause a denial of service via a long password.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1054

почти 23 года назад

Directory traversal vulnerability in Pablo FTP server 1.0 build 9 and earlier allows remote authenticated users to list arbitrary directories via "..\" (dot-dot backslash) sequences in a LIST command.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-1053

почти 23 года назад

Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script, which is included in the resulting error message.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2002-1052

почти 23 года назад

Jigsaw 2.2.1 on Windows systems allows remote attackers to use MS-DOS device names in HTTP requests to (1) cause a denial of service using the "con" device, or (2) obtain the physical path of the server using two requests to the "aux" device.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1051

почти 23 года назад

Format string vulnerability in TrACESroute 6.0 GOLD (aka NANOG traceroute) allows local users to execute arbitrary code via the -T (terminator) command line argument.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2002-1050

почти 23 года назад

Buffer overflow in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long line of image data.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1049

почти 23 года назад

Format string vulnerability in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service (crash) via the TSI data element.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1048

почти 23 года назад

HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-1047

почти 23 года назад

The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1046

почти 23 года назад

Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1045

почти 23 года назад

Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Date field that is converted into a year greater than 2037.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1044

почти 23 года назад

Buffer overflow in Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Subject field.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-1043

почти 23 года назад

Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Subject ("\t\t").

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2002-1042

почти 23 года назад

Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in the NS-query-pat parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1041

почти 23 года назад

Unknown vulnerability in DCE (1) SMIT panels and (2) configuration commands, possibly related to relative pathnames.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-1040

почти 23 года назад

Unknown vulnerability in the WebSecure (DFSWeb) configuration utilities in AIX 4.x, possibly related to relative pathnames.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-1059

Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execute arbitrary code via a long SSH1 protocol version string.

CVSS2: 7.5
73%
Высокий
почти 23 года назад
nvd логотип
CVE-2002-1058

Directory traversal vulnerability in splashAdmin.php for Cobalt Qube 3.0 allows local users and remote attackers, to gain privileges as the Qube Admin via .. (dot dot) sequences in the sessionId cookie that point to an alternate session file.

CVSS2: 10
6%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1057

Buffer overflow in SmartMax MailMax POP3 daemon (popmax) 4.8 allows remote attackers to execute arbitrary code via a long USER command.

CVSS2: 7.5
5%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1056

Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.

CVSS2: 7.5
16%
Средний
больше 23 лет назад
nvd логотип
CVE-2002-1055

Buffer overflow in administrative web server for Brother NC-3100h printer allows remote attackers to cause a denial of service via a long password.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1054

Directory traversal vulnerability in Pablo FTP server 1.0 build 9 and earlier allows remote authenticated users to list arbitrary directories via "..\" (dot-dot backslash) sequences in a LIST command.

CVSS2: 6.4
7%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1053

Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script, which is included in the resulting error message.

CVSS2: 6.8
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1052

Jigsaw 2.2.1 on Windows systems allows remote attackers to use MS-DOS device names in HTTP requests to (1) cause a denial of service using the "con" device, or (2) obtain the physical path of the server using two requests to the "aux" device.

CVSS2: 5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1051

Format string vulnerability in TrACESroute 6.0 GOLD (aka NANOG traceroute) allows local users to execute arbitrary code via the -T (terminator) command line argument.

CVSS2: 4.6
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1050

Buffer overflow in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long line of image data.

CVSS2: 7.5
4%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1049

Format string vulnerability in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service (crash) via the TSI data element.

CVSS2: 5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1048

HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0.

CVSS2: 7.5
10%
Средний
почти 23 года назад
nvd логотип
CVE-2002-1047

The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name.

CVSS2: 7.5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1046

Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1045

Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Date field that is converted into a year greater than 2037.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1044

Buffer overflow in Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Subject field.

CVSS2: 7.5
6%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1043

Ultrafunk Popcorn 1.20 allows remote attackers to cause a denial of service (crash) via a malformed Subject ("\t\t").

CVSS2: 5
10%
Средний
почти 23 года назад
nvd логотип
CVE-2002-1042

Directory traversal vulnerability in search engine for iPlanet web server 6.0 SP2 and 4.1 SP9, and Netscape Enterprise Server 3.6, when running on Windows platforms, allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in the NS-query-pat parameter.

CVSS2: 5
9%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1041

Unknown vulnerability in DCE (1) SMIT panels and (2) configuration commands, possibly related to relative pathnames.

CVSS2: 5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2002-1040

Unknown vulnerability in the WebSecure (DFSWeb) configuration utilities in AIX 4.x, possibly related to relative pathnames.

CVSS2: 5
1%
Низкий
почти 23 года назад

Уязвимостей на страницу