Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 367 614

Количество 367 614

nvd логотип

CVE-2002-0630

больше 23 лет назад

The Telnet service for Polycom ViewStation before 7.2.4 allows remote attackers to cause a denial of service (crash) via long or malformed ICMP packets.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0629

больше 23 лет назад

The Telnet service for Polycom ViewStation before 7.2.4 allows remote attackers to cause a denial of service (crash) via multiple connections to the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0628

больше 23 лет назад

The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0627

больше 23 лет назад

The Web server for Polycom ViewStation before 7.2.4 allows remote attackers to bypass authentication and read files via Unicode encoded requests.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0626

больше 23 лет назад

Polycom ViewStation before 7.2.4 has a default null password for the administrator account, which allows arbitrary users to conduct unauthorized activities.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2002-0624

около 24 лет назад

Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows remote attackers to gain control of the database and execute arbitrary code via SQL Server Authentication, aka "Unchecked Buffer in Password Encryption Procedure."

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0623

около 24 лет назад

Buffer overflow in AuthFilter ISAPI filter on Microsoft Commerce Server 2000 and 2002 allows remote attackers to execute arbitrary code via long authentication data, aka "New Variant of the ISAPI Filter Buffer Overrun".

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0622

около 24 лет назад

The Office Web Components (OWC) package installer for Microsoft Commerce Server 2000 allows remote attackers to execute commands by passing the commands as input to the OWC package installer, aka "OWC Package Command Execution".

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0621

около 24 лет назад

Buffer overflow in the Office Web Components (OWC) package installer used by Microsoft Commerce Server 2000 allows remote attackers to cause the process to fail or run arbitrary code in the LocalSystem security context via certain input to the OWC package installer.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2002-0620

около 24 лет назад

Buffer overflow in the Profile Service of Microsoft Commerce Server 2000 allows remote attackers to cause the server to fail or run arbitrary code in the LocalSystem security context via an input field using an affected API.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2002-0619

почти 24 года назад

The Mail Merge Tool in Microsoft Word 2002 for Windows, when Microsoft Access is present on a system, allows remote attackers to execute Visual Basic (VBA) scripts within a mail merge document that is saved in HTML format, aka a "Variant of MS00-071, Word Mail Merge Vulnerability" (CVE-2000-0788).

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0618

почти 24 года назад

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code in the Local Computer zone by embedding HTML scripts within an Excel workbook that contains an XSL stylesheet, aka "Excel XSL Stylesheet Script Execution".

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2002-0617

почти 24 года назад

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass."

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2002-0616

почти 24 года назад

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2002-0615

около 24 лет назад

The Windows Media Active Playlist in Microsoft Windows Media Player 7.1 stores information in a well known location on the local file system, allowing attackers to execute HTML scripts in the Local Computer zone, aka "Media Playback Script Invocation".

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0614

около 24 лет назад

PHP-Survey 20000615 and earlier stores the global.inc file under the web root, which allows remote attackers to obtain sensitive information, including database credentials, if .inc files are not preprocessed by the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0613

около 24 лет назад

dnstools.php for DNSTools 2.0 beta 4 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user_logged_in or user_dnstools_administrator parameters.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2002-0612

около 24 лет назад

FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2002-0611

около 24 лет назад

Directory traversal vulnerability in FileSeek.cgi allows remote attackers to read arbitrary files via a ....// (modified dot dot) in the (1) head or (2) foot parameters, which are not properly filtered.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2002-0610

около 24 лет назад

Vulnerability in FTPSRVR in HP MPE/iX 6.0 through 7.0 does not properly validate certain FTP commands, which allows attackers to gain privileges.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-0630

The Telnet service for Polycom ViewStation before 7.2.4 allows remote attackers to cause a denial of service (crash) via long or malformed ICMP packets.

CVSS2: 5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0629

The Telnet service for Polycom ViewStation before 7.2.4 allows remote attackers to cause a denial of service (crash) via multiple connections to the server.

CVSS2: 5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0628

The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.

CVSS3: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0627

The Web server for Polycom ViewStation before 7.2.4 allows remote attackers to bypass authentication and read files via Unicode encoded requests.

CVSS2: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0626

Polycom ViewStation before 7.2.4 has a default null password for the administrator account, which allows arbitrary users to conduct unauthorized activities.

CVSS2: 10
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2002-0624

Buffer overflow in the password encryption function of Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, allows remote attackers to gain control of the database and execute arbitrary code via SQL Server Authentication, aka "Unchecked Buffer in Password Encryption Procedure."

CVSS2: 7.5
23%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0623

Buffer overflow in AuthFilter ISAPI filter on Microsoft Commerce Server 2000 and 2002 allows remote attackers to execute arbitrary code via long authentication data, aka "New Variant of the ISAPI Filter Buffer Overrun".

CVSS2: 7.5
20%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0622

The Office Web Components (OWC) package installer for Microsoft Commerce Server 2000 allows remote attackers to execute commands by passing the commands as input to the OWC package installer, aka "OWC Package Command Execution".

CVSS2: 7.5
19%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0621

Buffer overflow in the Office Web Components (OWC) package installer used by Microsoft Commerce Server 2000 allows remote attackers to cause the process to fail or run arbitrary code in the LocalSystem security context via certain input to the OWC package installer.

CVSS2: 5
17%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0620

Buffer overflow in the Profile Service of Microsoft Commerce Server 2000 allows remote attackers to cause the server to fail or run arbitrary code in the LocalSystem security context via an input field using an affected API.

CVSS2: 5
12%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0619

The Mail Merge Tool in Microsoft Word 2002 for Windows, when Microsoft Access is present on a system, allows remote attackers to execute Visual Basic (VBA) scripts within a mail merge document that is saved in HTML format, aka a "Variant of MS00-071, Word Mail Merge Vulnerability" (CVE-2000-0788).

CVSS2: 7.5
16%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0618

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code in the Local Computer zone by embedding HTML scripts within an Excel workbook that contains an XSL stylesheet, aka "Excel XSL Stylesheet Script Execution".

CVSS2: 7.5
14%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0617

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by creating a hyperlink on a drawing shape in a source workbook that points to a destination workbook containing an autoexecute macro, aka "Hyperlinked Excel Workbook Macro Bypass."

CVSS2: 5.1
11%
Средний
почти 24 года назад
nvd логотип
CVE-2002-0616

The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."

CVSS2: 5.1
10%
Низкий
почти 24 года назад
nvd логотип
CVE-2002-0615

The Windows Media Active Playlist in Microsoft Windows Media Player 7.1 stores information in a well known location on the local file system, allowing attackers to execute HTML scripts in the Local Computer zone, aka "Media Playback Script Invocation".

CVSS2: 7.5
6%
Низкий
около 24 лет назад
nvd логотип
CVE-2002-0614

PHP-Survey 20000615 and earlier stores the global.inc file under the web root, which allows remote attackers to obtain sensitive information, including database credentials, if .inc files are not preprocessed by the server.

CVSS2: 5
2%
Низкий
около 24 лет назад
nvd логотип
CVE-2002-0613

dnstools.php for DNSTools 2.0 beta 4 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user_logged_in or user_dnstools_administrator parameters.

CVSS2: 10
11%
Средний
около 24 лет назад
nvd логотип
CVE-2002-0612

FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters.

CVSS2: 7.5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2002-0611

Directory traversal vulnerability in FileSeek.cgi allows remote attackers to read arbitrary files via a ....// (modified dot dot) in the (1) head or (2) foot parameters, which are not properly filtered.

CVSS2: 5
8%
Низкий
около 24 лет назад
nvd логотип
CVE-2002-0610

Vulnerability in FTPSRVR in HP MPE/iX 6.0 through 7.0 does not properly validate certain FTP commands, which allows attackers to gain privileges.

CVSS2: 7.5
3%
Низкий
около 24 лет назад

Уязвимостей на страницу