Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2002-2254 | 1 Linux | 1 Linux Kernel | 2017-07-28 | 2.1 LOW | N/A |
The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may allow a later process with the same Process ID (PID) to access certain network traffic that would otherwise be restricted. | |||||
CVE-2002-2255 | 1 Phpbb | 1 Phpbb | 2017-07-28 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in search.php in phpBB 2.0.3 and possibly earlier versions allows remote attackers to inject arbitrary web script or HTML via the search_username parameter in searchuser mode. | |||||
CVE-2002-2256 | 1 Pwins | 1 Pwins | 2017-07-28 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in pWins Webserver 0.2.5 and earlier allows remote attackers to read arbitrary files via Unicode characters. | |||||
CVE-2002-2257 | 1 Tuxbr | 1 Libcgi | 2017-07-28 | 10.0 HIGH | N/A |
Stack-based buffer overflow in the parse_field function in cgi_lib.c for LIBCGI 1.0.2 and 1.0.3 allows remote attackers to execute arbitrary code via a long argument. | |||||
CVE-2002-2258 | 1 Mobydisk | 1 Netsuite | 2017-07-28 | 5.0 MEDIUM | N/A |
Moby NetSuite allows remote attackers to cause a denial of service (crash) via an HTTP POST request with a (1) large integer or (2) non-numeric value in the Content-Length header, which causes an access violation after a failed atoi function call. | |||||
CVE-2002-2259 | 2 Gnuplot, Suse | 2 Gnuplot, Suse Linux | 2017-07-28 | 7.2 HIGH | N/A |
Buffer overflow in the French documentation patch for Gnuplot 3.7 in SuSE Linux before 8.0 allows local users to execute arbitrary code as root via unknown attack vectors. | |||||
CVE-2002-2260 | 1 Mozilla | 1 Bugzilla | 2017-07-28 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in the quips feature in Mozilla Bugzilla 2.10 through 2.17 allows remote attackers to inject arbitrary web script or HTML via the "show all quips" page. | |||||
CVE-2002-2263 | 1 Hp | 2 Hp-ux, Visualize Conference Ftp | 2017-07-28 | 6.6 MEDIUM | N/A |
The installation program for HP-UX Visualize Conference B.11.00.11 running on HP-UX 11.00 and 11.11 installs /etc/dt and its subdirecties with insecure permissions, which allows local users to read or write arbitrary files. | |||||
CVE-2002-2265 | 2 Hp, Open Source Internet Solutions | 2 Tru64, Open Source Internet Solutions | 2017-07-28 | 6.4 MEDIUM | N/A |
Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors. | |||||
CVE-2002-2266 | 1 Netscreen | 1 Screenos | 2017-07-28 | 5.0 MEDIUM | N/A |
NetScreen ScreenOS 2.8 through 4.0, when forwarding H.323 or Netmeeting traffic, allows remote attackers to cause a denial of service (firewall session table consumption) by establishing multiple half-open H.323 sessions, which are not cleaned up on garbage removal and do not time out for 36 hours. | |||||
CVE-2002-2267 | 1 Bogofilter | 1 Bogopass Email Filter | 2017-07-28 | 7.2 HIGH | N/A |
bogopass in bogofilter 0.9.0.4 allows local users to overwrite arbitrary files via a symlink attack on the bogopass temporary file. | |||||
CVE-2002-2268 | 1 Netdave | 1 Webster Http Server | 2017-07-28 | 9.4 HIGH | N/A |
Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL. | |||||
CVE-2002-2269 | 1 Webster | 1 Webster Http Server | 2017-07-28 | 9.4 HIGH | N/A |
Directory traversal vulnerability in Webster HTTP Server allows remote attackers to read arbitrary files via a .. (dot dot) in the URL. | |||||
CVE-2002-2271 | 1 Bigfun | 1 Bigfun | 2017-07-28 | 5.0 MEDIUM | N/A |
Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attackers to cause a denial of service (crash) via a long string. | |||||
CVE-2002-2272 | 1 Apache | 2 Http Server, Tomcat | 2017-07-28 | 7.8 HIGH | N/A |
Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values. | |||||
CVE-2002-2273 | 1 Webster | 1 Webster Http Server | 2017-07-28 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Webster HTTP Server allows remote attackers to inject arbitrary web script or HTML via the URL. | |||||
CVE-2002-2274 | 1 Akfingerd | 1 Akfingerd | 2017-07-28 | 2.1 LOW | N/A |
akfingerd 0.5 allows local users to read arbitrary files as the akfingerd user (nobody) via a symlink attack on the .plan file. | |||||
CVE-2002-2275 | 1 Fortres Grand Corporation | 1 Fortres | 2017-07-28 | 2.1 LOW | N/A |
Fortres 101 4.1 allows local users to bypass Fortres by pressing the Windows and "F" key together for 30 seconds, which opens multiple windows and eventually causes explorer.exe to crash, which then opens an unrestricted explorer.exe. | |||||
CVE-2002-2276 | 1 Ultimate Php Board | 1 Ultimate Php Board | 2017-07-28 | 5.0 MEDIUM | N/A |
Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the path in an error message. | |||||
CVE-2002-2277 | 1 Portail Web Php | 1 Portail Web Php | 2017-07-28 | 7.5 HIGH | N/A |
SQL injection vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to execute arbitrary SQL commands via the (1) $rech, (2) $BD_Tab_docs, (3) $BD_Tab_file, (4) $BD_Tab_liens, (5) $BD_Tab_faq, or (6) $chemin variables. |