Total
29527 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2002-0314 | 3 Fasttrack, Grokster, Music City Networks | 3 Kazaa, Grokster, Morpheus | 2016-10-18 | 5.0 MEDIUM | N/A |
| fasttrack p2p, as used in (1) KaZaA before 1.5, (2) grokster, and (3) morpheus allows remote attackers to cause a denial of service (memory exhaustion) via a series of client-to-client messages, which pops up new windows per message. | |||||
| CVE-2002-0297 | 1 Nombas | 1 Scriptease Webserver | 2016-10-18 | 5.0 MEDIUM | N/A |
| Buffer overflow in ScriptEase MiniWeb Server 0.95 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request. | |||||
| CVE-2002-0274 | 1 University Of Cambridge | 1 Exim | 2016-10-18 | 4.6 MEDIUM | N/A |
| Exim 3.34 and earlier may allow local users to gain privileges via a buffer overflow in long -C (configuration file) and other command line arguments. | |||||
| CVE-2002-0307 | 1 Avengers News System | 1 Avengers News System | 2016-10-18 | 7.5 HIGH | N/A |
| Directory traversal vulnerability in ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter, which reads the target file and attempts to execute the line using Perl's eval function. | |||||
| CVE-2002-0284 | 1 Nullsoft | 1 Winamp | 2016-10-18 | 2.6 LOW | N/A |
| Winamp 2.78 and 2.77, when opening a wma file that requires a license, sends the full path of the Temporary Internet Files directory to the web page that is processing the license, which could allow malicious web servers to obtain the pathname. | |||||
| CVE-2002-0290 | 1 Netwin | 1 Webnews | 2016-10-18 | 7.5 HIGH | N/A |
| Buffer overflow in Netwin WebNews CGI program 1.1, Webnews.exe, allows remote attackers to execute arbitrary code via a long group argument. | |||||
| CVE-2002-0295 | 1 Alcatel-lucent | 1 Omnipcx | 2016-10-18 | 4.6 MEDIUM | N/A |
| Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges. | |||||
| CVE-2002-0277 | 1 Add2it | 1 Mailman Free | 2016-10-18 | 7.5 HIGH | N/A |
| Add2it Mailman Free 1.73 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the list parameter. | |||||
| CVE-2002-0283 | 1 Microsoft | 1 Windows Xp | 2016-10-18 | 5.0 MEDIUM | N/A |
| Windows XP with port 445 open allows remote attackers to cause a denial of service (CPU consumption) via a flood of TCP SYN packets containing possibly malformed data. | |||||
| CVE-2002-0276 | 1 Ettercap | 1 Ettercap | 2016-10-18 | 7.5 HIGH | N/A |
| Buffer overflow in various decoders in Ettercap 0.6.3.1 and earlier, when running on networks with an MTU greater than 2000, allows remote attackers to execute arbitrary code via large packets. | |||||
| CVE-2002-0303 | 1 Novell | 1 Groupwise | 2016-10-18 | 4.6 MEDIUM | N/A |
| GroupWise 6, when using LDAP authentication and when Post Office has a blank username and password, allows attackers to gain privileges of other users by logging in without a password. | |||||
| CVE-2002-0315 | 3 Fasttrack, Grokster, Music City Networks | 3 Kazaa, Grokster, Morpheus | 2016-10-18 | 7.5 HIGH | N/A |
| fasttrack p2p, as used in (1) KaZaA, (2) grokster, and (3) morpheus allows remote attackers to spoof other users by modifying the username and network information in the message header. | |||||
| CVE-2002-0292 | 1 Open Source Development Network | 1 Slashcode | 2016-10-18 | 2.6 LOW | N/A |
| Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and authentication information from other users via Javascript in a URL, possibly in the formkey field. | |||||
| CVE-2002-0273 | 1 Netwin | 1 Cwmail | 2016-10-18 | 4.6 MEDIUM | N/A |
| Buffer overflow in CWMail.exe in NetWin before 2.8a allows remote authenticated users to execute arbitrary code via a long item parameter. | |||||
| CVE-2002-0278 | 1 Add2it | 1 Mailman Free | 2016-10-18 | 7.5 HIGH | N/A |
| Directory traversal vulnerability in Add2it Mailman Free 1.73 and earlier allows remote attackers to modify arbitrary files via a .. (dot dot) in the list parameter. | |||||
| CVE-2002-0299 | 1 Cnet | 1 Catchup | 2016-10-18 | 7.6 HIGH | N/A |
| CNet CatchUp before 1.3.1 allows attackers to execute arbitrary code via a .RVP file that creates a file with an arbitrary extension (such as .BAT), which is executed during a scan. | |||||
| CVE-2002-0306 | 1 Avengers News System | 1 Avengers News System | 2016-10-18 | 7.5 HIGH | N/A |
| ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the p (plugin) parameter. | |||||
| CVE-2002-0304 | 1 Summit Computer Networks | 1 Lil Http Server | 2016-10-18 | 5.0 MEDIUM | N/A |
| Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request. | |||||
| CVE-2002-0294 | 1 Alcatel-lucent | 1 Omnipcx | 2016-10-18 | 2.1 LOW | N/A |
| Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system. | |||||
| CVE-2002-0280 | 1 Codeblue | 1 Codeblue | 2016-10-18 | 7.5 HIGH | N/A |
| Buffer overflow in CodeBlue 4 and earlier, and possibly other versions, allows remote attackers to execute arbitrary code via a long string in an SMTP reply. | |||||
