Latest CVE Feed
-
7.5
HIGHCVE-2002-0006
XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as other clients via encoded characters in a PRIVMSG command that calls CTCP PING, which expands the characters in the ... Read more
- EPSS Score: %8.63
- Published: Jun. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0146
fetchmail email client before 5.9.10 does not properly limit the maximum number of messages available, which allows a remote IMAP server to overwrite memory via a message count that exceeds the boundaries of an array.... Read more
Affected Products : fetchmail- EPSS Score: %0.86
- Published: Jun. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0404
Vulnerability in GIOP dissector in Ethereal before 0.9.3 allows remote attackers to cause a denial of service (memory consumption).... Read more
Affected Products : ethereal- EPSS Score: %1.82
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0400
ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition that is not properly handled when the rdataset parameter to the dns_message_findtype() function in message.... Read more
Affected Products : bind- EPSS Score: %27.73
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0403
DNS dissector in Ethereal before 0.9.3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed packet that causes Ethereal to enter an infinite loop.... Read more
Affected Products : ethereal- EPSS Score: %1.82
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0388
Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries.... Read more
Affected Products : mailman- EPSS Score: %3.15
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0578
Buffer overflow in 4D WebServer 6.7.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an HTTP request with Basic Authentication containing a long (1) user name or (2) password.... Read more
Affected Products : 4d_webserver- EPSS Score: %1.34
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-0577
Vulnerability in passwd for HP-UX 11.00 and 11.11 allows local users to corrupt the password file and cause a denial of service.... Read more
Affected Products : hp-ux- EPSS Score: %0.10
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0590
Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and steal cookies as other IcrediBB users via the (1) title or (2) body of posts.... Read more
Affected Products : icredibb- EPSS Score: %3.06
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0603
Snapgear Lite+ firewall 1.5.3 allows remote attackers to cause a denial of service (IPSEC crash) via a zero length packet to UDP port 500.... Read more
Affected Products : snapgear_lite\+_firewall- EPSS Score: %0.91
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0614
PHP-Survey 20000615 and earlier stores the global.inc file under the web root, which allows remote attackers to obtain sensitive information, including database credentials, if .inc files are not preprocessed by the server.... Read more
Affected Products : php-survey- EPSS Score: %0.81
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0604
Snapgear Lite+ firewall 1.5.3 and 1.5.4 allows remote attackers to cause a denial of service (crash) via a large number of packets with malformed IP options.... Read more
Affected Products : snapgear_lite\+_firewall- EPSS Score: %0.91
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0607
members.asp in Snitz Forums 2000 version 3.3.03 and earlier allows remote attackers to execute arbitrary code via a SQL injection attack on the parameters (1) M_NAME, (2) UserName, (3) FirstName, (4) LastName, or (5) INITIAL.... Read more
Affected Products : snitz_forums_2000- EPSS Score: %1.74
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0611
Directory traversal vulnerability in FileSeek.cgi allows remote attackers to read arbitrary files via a ....// (modified dot dot) in the (1) head or (2) foot parameters, which are not properly filtered.... Read more
Affected Products : fileseek- EPSS Score: %5.45
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0612
FileSeek.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) head or (2) foot parameters.... Read more
Affected Products : fileseek- EPSS Score: %9.92
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0588
PVote before 1.9 does not authenticate users for restricted operations, which allows remote attackers to add or delete polls by modifying parameters to (1) add.php or (2) del.php.... Read more
Affected Products : pvote- EPSS Score: %5.05
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0608
Buffer overflow in Matu FTP client 1.74 allows remote FTP servers to execute arbitrary code via a long "220" banner.... Read more
Affected Products : matu_ftp- EPSS Score: %3.81
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0592
AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the intended user.... Read more
Affected Products : instant_messenger- EPSS Score: %0.72
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0609
Vulnerability in HP MPE/iX 6.0 through 7.0 allows attackers to cause a denial of service (system failure with "SA1457 out of i_port_timeout.fix_up_message_frame") via malformed IP packets.... Read more
Affected Products : mpe_ix- EPSS Score: %1.52
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0575
Buffer overflow in OpenSSH before 2.9.9, and 3.x before 3.2.1, with Kerberos/AFS support and KerberosTgtPassing or AFSTokenPassing enabled, allows remote and local authenticated users to gain privileges.... Read more
Affected Products : openssh- EPSS Score: %3.40
- Published: Jun. 18, 2002
- Modified: Apr. 03, 2025