Latest CVE Feed
-
7.2
HIGHCVE-2002-0125
Buffer overflow in ClanLib library 0.5 may allow local users to execute arbitrary code in games that use the library, such as (1) Super Methane Brothers, (2) Star War, (3) Kwirk, (4) Clankanoid, and others, via a long HOME environment variable.... Read more
Affected Products : clanlib- EPSS Score: %0.06
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0108
Allaire Forums 2.0.4 and 2.0.5 and Forums! 3.0 and 3.1 allows remote authenticated users to spoof messages as other users by modifying the hidden form fields for the name and e-mail address.... Read more
Affected Products : forums- EPSS Score: %0.81
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0130
Buffer overflow in efax 0.9 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -x argument.... Read more
Affected Products : efax- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0104
AFTPD 5.4.4 allows remote attackers to gain sensitive information via a CD (CWD) ~ (tilde) command, which causes a core dump.... Read more
Affected Products : aftpd- EPSS Score: %0.92
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0096
The installation of Geeklog 1.3 creates an extra group_assignments record which is not properly deleted, which causes the first newly created user to be added to the GroupAdmin and UserAdmin groups, which could provide that user with administrative privil... Read more
Affected Products : geeklog- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0112
Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.... Read more
Affected Products : eserv- EPSS Score: %7.50
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0124
MDG Computer Services Web Server 4D/eCommerce 3.5.3 allows remote attackers to exploit directory traversal vulnerability via a ../ (dot dot) containing URL-encoded slashes in the HTTP request.... Read more
Affected Products : web_server_4d_ecommerce- EPSS Score: %1.14
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-0143
Buffer overflow in Eterm of Enlightenment Imlib2 1.0.4 and earlier allows local users to execute arbitrary code via a long HOME environment variable.... Read more
- EPSS Score: %0.18
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0105
CDE dtlogin in Caldera UnixWare 7.1.0, and possibly other operating systems, allows local users to gain privileges via a symlink attack on /var/dt/Xerrors since /var/dt is world-writable.... Read more
Affected Products : unixware- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0140
Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and possibly execute arbitrary code via a long or malformed DNS reply, which is not handled properly by parse_query, get_objectname, and possib... Read more
Affected Products : dnrd- EPSS Score: %4.80
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0145
chuid 1.2 and earlier does not properly verify the ownership of files that will be changed, which allows remote attackers to change files owned by other users, such as root.... Read more
Affected Products : chuid- EPSS Score: %0.72
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0122
Siemens 3568i WAP mobile phones allows remote attackers to cause a denial of service (crash) via an SMS message containing unusual characters.... Read more
Affected Products : 3568i_wap- EPSS Score: %1.32
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0111
Directory traversal vulnerability in Funsoft Dino's Webserver 1.2 and earlier allows remote attackers to read files or execute arbitrary commands via a .. (dot dot) in the URL.... Read more
Affected Products : dinos_webserver- EPSS Score: %1.14
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0100
AOL AOLserver 3.4.2 Win32 allows remote attackers to bypass authentication and read password-protected files via a URL that directly references the file.... Read more
Affected Products : aol_server- EPSS Score: %0.66
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0127
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26, when configured to block traffic below port 1024, allows remote attackers to cause a denial of service (hang) via a port scan of the WAN port.... Read more
Affected Products : rp114- EPSS Score: %0.58
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0139
Pi-Soft SpoonFTP 1.1 and earlier allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.... Read more
Affected Products : spoonftp- EPSS Score: %0.87
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0137
CDRDAO 1.1.4 and 1.1.5 allows local users to overwrite arbitrary files via a symlink attack on the $HOME/.cdrdao configuration file.... Read more
Affected Products : cdrdao- EPSS Score: %0.12
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0097
Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a user's permanent cookie to the target account.... Read more
Affected Products : geeklog- EPSS Score: %0.74
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
1.2
LOWCVE-2002-0141
Maelstrom GPL 3.0.1 allows local users to overwrite arbitrary files of other Maelstrom users via a symlink attack on the /tmp/f file.... Read more
Affected Products : maelstrom_gpl- EPSS Score: %0.19
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0117
Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.... Read more
Affected Products : yabb- EPSS Score: %6.89
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025