Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 367 614

Количество 367 614

nvd логотип

CVE-2002-0752

почти 24 года назад

CGIscript.net csMailto.cgi program exports feedback to a file that is accessible from the web document root, which could allow remote attackers to obtain sensitive information by directly accessing the file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0751

почти 24 года назад

CGIscript.net csMailto.cgi program allows remote attackers to use csMailto as a "spam proxy" and send mail to arbitrary users via modified (1) form-to, (2) form-from, and (3) form-results parameters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0750

почти 24 года назад

CGIscript.net csMailto.cgi program allows remote attackers to read arbitrary files by specifying the target filename in the form-attachment field.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0749

почти 24 года назад

CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0748

почти 24 года назад

LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2002-0747

почти 24 года назад

Buffer overflow in lsmcode in AIX 4.3.3.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0746

почти 24 года назад

Vulnerability in template.dhcpo in AIX 4.3.3 related to an insecure linker argument.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0745

почти 24 года назад

Buffer overflow in uucp in AIX 4.3.3.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0744

почти 24 года назад

namerslv in AIX 4.3.3 core dumps when called with a very long argument, possibly as a result of a buffer overflow.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0743

почти 24 года назад

mail and mailx in AIX 4.3.3 core dump when called with a very long argument, an indication of a buffer overflow.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0742

почти 24 года назад

Buffer overflow in pioout on AIX 4.3.3.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0741

почти 24 года назад

psyBNC 2.3 allows remote attackers to cause a denial of service (CPU consumption and resource exhaustion) by sending a PASS command with a long password argument and quickly killing the connection, which is not properly terminated by psyBNC.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0740

почти 24 года назад

Buffer overflow in slrnpull for the SLRN package, when installed setuid or setgid, allows local users to gain privileges via a long -d (SPOOLDIR) argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2002-0739

почти 24 года назад

Cross-site scripting in PostCalendar 3.02 allows remote attackers to insert arbitrary HTML and script, and steal cookies, by modifying a calendar entry in its preview page.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0738

почти 24 года назад

MHonArc 2.5.2 and earlier does not properly filter Javascript from archived e-mail messages, which could allow remote attackers to execute script in web clients by (1) splitting the SCRIPT tag into smaller pieces, (2) including the script in a SRC argument to an IMG tag, or (3) using "&={script}" syntax.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0737

почти 24 года назад

Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2002-0736

почти 24 года назад

Microsoft BackOffice 4.0 and 4.5, when configured to be accessible by other systems, allows remote attackers to bypass authentication and access the administrative ASP pages via an HTTP request with an authorization type (auth_type) that is not blank.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2002-0735

почти 24 года назад

Format string vulnerability in the logging() function in C-Note Squid LDAP authentication module (squid_auth_LDAP) 2.0.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code by triggering log messages.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0734

почти 24 года назад

b2edit.showposts.php in B2 2.0.6pre2 and earlier does not properly load the b2config.php file in some configurations, which allows remote attackers to execute arbitrary PHP code via a URL that sets the $b2inc variable to point to a malicious program stored on a remote server.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0733

почти 24 года назад

Cross-site scripting vulnerability in thttpd 2.20 and earlier allows remote attackers to execute arbitrary script via a URL to a nonexistent page, which causes thttpd to insert the script into a 404 error message.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-0752

CGIscript.net csMailto.cgi program exports feedback to a file that is accessible from the web document root, which could allow remote attackers to obtain sensitive information by directly accessing the file.

CVSS2: 5
2%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0751

CGIscript.net csMailto.cgi program allows remote attackers to use csMailto as a "spam proxy" and send mail to arbitrary users via modified (1) form-to, (2) form-from, and (3) form-results parameters.

CVSS2: 7.5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0750

CGIscript.net csMailto.cgi program allows remote attackers to read arbitrary files by specifying the target filename in the form-attachment field.

CVSS2: 5
2%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0749

CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.

CVSS2: 7.5
11%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0748

LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.

CVSS2: 5
10%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0747

Buffer overflow in lsmcode in AIX 4.3.3.

CVSS2: 10
6%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0746

Vulnerability in template.dhcpo in AIX 4.3.3 related to an insecure linker argument.

CVSS2: 10
2%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0745

Buffer overflow in uucp in AIX 4.3.3.

CVSS2: 10
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0744

namerslv in AIX 4.3.3 core dumps when called with a very long argument, possibly as a result of a buffer overflow.

CVSS2: 10
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0743

mail and mailx in AIX 4.3.3 core dump when called with a very long argument, an indication of a buffer overflow.

CVSS2: 10
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0742

Buffer overflow in pioout on AIX 4.3.3.

CVSS2: 10
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0741

psyBNC 2.3 allows remote attackers to cause a denial of service (CPU consumption and resource exhaustion) by sending a PASS command with a long password argument and quickly killing the connection, which is not properly terminated by psyBNC.

CVSS2: 5
8%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0740

Buffer overflow in slrnpull for the SLRN package, when installed setuid or setgid, allows local users to gain privileges via a long -d (SPOOLDIR) argument.

CVSS2: 7.2
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0739

Cross-site scripting in PostCalendar 3.02 allows remote attackers to insert arbitrary HTML and script, and steal cookies, by modifying a calendar entry in its preview page.

CVSS2: 7.5
2%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0738

MHonArc 2.5.2 and earlier does not properly filter Javascript from archived e-mail messages, which could allow remote attackers to execute script in web clients by (1) splitting the SCRIPT tag into smaller pieces, (2) including the script in a SRC argument to an IMG tag, or (3) using "&={script}" syntax.

CVSS2: 7.5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0737

Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.

CVSS2: 6.4
9%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0736

Microsoft BackOffice 4.0 and 4.5, when configured to be accessible by other systems, allows remote attackers to bypass authentication and access the administrative ASP pages via an HTTP request with an authorization type (auth_type) that is not blank.

CVSS2: 10
32%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0735

Format string vulnerability in the logging() function in C-Note Squid LDAP authentication module (squid_auth_LDAP) 2.0.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code by triggering log messages.

CVSS2: 7.5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0734

b2edit.showposts.php in B2 2.0.6pre2 and earlier does not properly load the b2config.php file in some configurations, which allows remote attackers to execute arbitrary PHP code via a URL that sets the $b2inc variable to point to a malicious program stored on a remote server.

CVSS2: 7.5
7%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0733

Cross-site scripting vulnerability in thttpd 2.20 and earlier allows remote attackers to execute arbitrary script via a URL to a nonexistent page, which causes thttpd to insert the script into a 404 error message.

CVSS2: 7.5
8%
Низкий
почти 24 года назад

Уязвимостей на страницу