Latest CVE Feed
-
7.5
HIGHCVE-2002-0627
The Web server for Polycom ViewStation before 7.2.4 allows remote attackers to bypass authentication and read files via Unicode encoded requests.... Read more
- EPSS Score: %0.79
- Published: Jan. 07, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0628
The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.... Read more
- EPSS Score: %1.42
- Published: Jan. 07, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0629
The Telnet service for Polycom ViewStation before 7.2.4 allows remote attackers to cause a denial of service (crash) via multiple connections to the server.... Read more
- EPSS Score: %1.32
- Published: Jan. 07, 2003
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2003-1071
rpc.walld (wall daemon) for Solaris 2.6 through 9 allows local users to send messages to logged on users that appear to come from arbitrary user IDs by closing stderr before executing wall, then supplying a spoofed from header.... Read more
- EPSS Score: %0.32
- Published: Jan. 03, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-1384
Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.... Read more
- EPSS Score: %0.07
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2002-1388
Cross-site scripting (XSS) vulnerability in MHonArc before 2.5.14 allows remote attackers to inject arbitrary HTML into web archive pages via HTML mail messages.... Read more
Affected Products : mhonarc- EPSS Score: %0.35
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1379
OpenLDAP2 (OpenLDAP 2) 2.2.0 and earlier allows remote or local attackers to execute arbitrary code when libldap reads the .ldaprc file within applications that are running with extra privileges.... Read more
Affected Products : openldap- EPSS Score: %1.23
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1386
Buffer overflow in traceroute-nanog (aka traceroute-ng) may allow local users to execute arbitrary code via a long hostname argument.... Read more
Affected Products : tracesroute- EPSS Score: %0.10
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1387
The spray mode in traceroute-nanog (aka traceroute-ng) may allow local users to overwrite arbitrary memory locations via an array index overflow using the nprobes (number of probes) argument.... Read more
Affected Products : tracesroute- EPSS Score: %0.07
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1378
Multiple buffer overflows in OpenLDAP2 (OpenLDAP 2) 2.2.0 and earlier allow remote attackers to execute arbitrary code via (1) long -t or -r parameters to slurpd, (2) a malicious ldapfilter.conf file that is not properly handled by getfilter functions, (3... Read more
Affected Products : openldap- EPSS Score: %9.20
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1389
Buffer overflow in typespeed 0.4.2 and earlier allows local users to gain privileges via long input.... Read more
Affected Products : typespeed- EPSS Score: %0.08
- Published: Jan. 02, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1905
Buffer overflow in the web server of Polycom ViaVideo 2.2 and 3.0 allows remote attackers to cause a denial of service (crash) via a long HTTP GET request.... Read more
Affected Products : viavideo- EPSS Score: %4.35
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-2006
The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets.... Read more
Affected Products : tomcat- EPSS Score: %32.36
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
7.8
HIGHCVE-2002-2272
Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values.... Read more
- EPSS Score: %20.74
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-2300
Buffer overflow in ftpd 5.4 in 3Com NBX 4.0.17 or ftpd 5.4.2 in 3Com NBX 4.1.4 allows remote attackers to cause a denial of service (crash) via a long CEL command.... Read more
Affected Products : webbngss3nbxnts- EPSS Score: %19.84
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-2261
Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' function by spoofing a blank DNS hostname.... Read more
Affected Products : sendmail- EPSS Score: %0.65
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
4.9
MEDIUMCVE-2002-2185
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the route... Read more
Affected Products : enterprise_linux debian_linux enterprise_linux_desktop windows_xp suse_linux windows_98 linux linux_advanced_workstation mandrake_linux windows_98se +1 more products- EPSS Score: %0.38
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-2007
The default installations of Apache Tomcat 3.2.3 and 3.2.4 allows remote attackers to obtain sensitive system information such as directory listings and web root path, via erroneous HTTP requests for Java Server Pages (JSP) in the (1) test/jsp, (2) sample... Read more
Affected Products : tomcat- EPSS Score: %22.61
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1661
The leafnode server in leafnode 1.9.20 to 1.9.29 allows remote attackers to cause a denial of service (infinite loop) when leafnode requests a cross-posted article to one group whose name is a prefix of another group.... Read more
Affected Products : leafnode- EPSS Score: %2.46
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1631
SQL injection vulnerability in the query.xsql sample page in Oracle 9i Application Server (9iAS) allows remote attackers to execute arbitrary code via the sql parameter.... Read more
Affected Products : application_server- EPSS Score: %5.94
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025