Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2002-0198

    Buffer overflow in plDaniels ripMime 1.2.6 and earlier, as used in other programs such as xamime and inflex, allows remote attackers to execute arbitrary code via an attachment in a long filename.... Read more

    Affected Products : ripmime inflex
    • EPSS Score: %5.63
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0229

    Safe Mode feature (safe_mode) in PHP 3.0 through 4.1.0 allows attackers with access to the MySQL database to bypass Safe Mode access restrictions and read arbitrary files using "LOAD DATA INFILE LOCAL" SQL statements.... Read more

    Affected Products : php
    • EPSS Score: %7.72
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2002-0203

    ttawebtop.cgi in Tarantella Enterprise 3.20 on SPARC Solaris and Linux, and 3.1x and 3.0x including 3.11.903, allows remote attackers to view directory contents via an empty pg parameter.... Read more

    Affected Products : tarantella_enterprise
    • EPSS Score: %0.71
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0199

    Buffer overflow in admin.cgi for Nullsoft Shoutcast Server 1.8.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an argument with a large number of backslashes.... Read more

    Affected Products : shoutcast_server
    • EPSS Score: %1.82
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0185

    mod_python version 2.7.6 and earlier allows a module indirectly imported by a published module to then be accessed via the publisher, which allows remote attackers to call possibly dangerous functions from the imported module.... Read more

    Affected Products : mod_python
    • EPSS Score: %4.63
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2002-0215

    Agora.cgi 3.2r through 4.0 while in debug mode allows remote attackers to determine the full pathname of the agora.cgi file by requesting a non-existent .html file, which leaks the pathname in an error message.... Read more

    Affected Products : agora.cgi
    • EPSS Score: %8.20
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0205

    Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.... Read more

    Affected Products : plumtree_corporate_portal
    • EPSS Score: %0.74
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 6.2

    MEDIUM
    CVE-2002-0211

    Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before i... Read more

    Affected Products : tarantella_enterprise
    • EPSS Score: %0.17
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2002-0201

    Cyberstop Web Server for Windows 0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request, possibly triggering a buffer overflow.... Read more

    Affected Products : cyberstop_web_server
    • EPSS Score: %3.04
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0204

    Buffer overflow in GNU Chess (gnuchess) 5.02 and earlier, if modified or used in a networked capacity contrary to its own design as a single-user application, may allow local or remote attackers to execute arbitrary code via a long command.... Read more

    Affected Products : chess
    • EPSS Score: %3.21
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0207

    Buffer overflow in Real Networks RealPlayer 8.0 and earlier allows remote attackers to execute arbitrary code via a header length value that exceeds the actual length of the header.... Read more

    Affected Products : realone_player realplayer_intranet
    • EPSS Score: %11.10
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0212

    The login for Hosting Controller 1.1 through 1.4.1 returns different error messages when a valid or invalid user is provided, which allows remote attackers to determine the existence of valid usernames and makes it easier to conduct a brute force attack.... Read more

    Affected Products : hosting_controller
    • EPSS Score: %0.74
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2002-0218

    Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a command line argument.... Read more

    • EPSS Score: %0.10
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2002-0224

    The MSDTC (Microsoft Distributed Transaction Service Coordinator) for Microsoft Windows 2000, Microsoft IIS 5.0 and SQL Server 6.5 through SQL 2000 0.0 allows remote attackers to cause a denial of service (crash or hang) via malformed (random) input.... Read more

    • EPSS Score: %19.46
    • Published: May. 16, 2002
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2002-1592

    The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.... Read more

    Affected Products : http_server
    • EPSS Score: %4.84
    • Published: May. 06, 2002
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-1999-1570

    Buffer overflow in sar for OpenServer 5.0.5 allows local users to gain root privileges via a long -o parameter.... Read more

    Affected Products : openserver
    • EPSS Score: %0.05
    • Published: May. 01, 2002
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2002-1602

    Buffer overflow in the Braille module for GNU screen 3.9.11, when HAVE_BRAILLE is defined, allows local users to execute arbitrary code.... Read more

    Affected Products : screen
    • EPSS Score: %0.12
    • Published: Apr. 23, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0152

    Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5... Read more

    • EPSS Score: %22.55
    • Published: Apr. 22, 2002
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2002-0170

    Zope 2.2.0 through 2.5.1 does not properly verify the access for objects with proxy roles, which could allow some users to access documents in violation of the intended configuration.... Read more

    Affected Products : zope
    • EPSS Score: %0.74
    • Published: Apr. 22, 2002
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2002-0064

    Funk Software Proxy Host 3.x is installed with insecure permissions for the registry and the file system.... Read more

    Affected Products : netrc funk_software_proxy
    • EPSS Score: %0.11
    • Published: Apr. 22, 2002
    • Modified: Apr. 03, 2025
Showing 20 of 291573 Results