Latest CVE Feed
-
7.5
HIGHCVE-2001-1174
Buffer overflow in Elm 2.5.5 and earlier allows remote attackers to execute arbitrary code via a long Message-ID header.... Read more
- EPSS Score: %4.26
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1620
Unknown vulnerability in IBM AIX Parallel Systems Support Programs (PSSP) 3.1.1, 3.2, and 3.4 allows remote attackers to read arbitrary files from a file collection.... Read more
Affected Products : aix_parallel_systems_support_programs- EPSS Score: %0.91
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2002-1640
Multiple cross-site scripting (XSS) vulnerabilities in Oracle Configurator before 11.5.7.17.32 and 11.5.6.16.53 allows remote attackers to inject arbitrary web script or HTML via (1) Text Features in the DHTML UI or (2) the test parameter to the oracle.ap... Read more
Affected Products : configurator- EPSS Score: %1.52
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1175
vipw in the util-linux package before 2.10 causes /etc/shadow to be world-readable in some cases, which would make it easier for local users to perform brute force password guessing.... Read more
- EPSS Score: %0.05
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2001-1171
Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify the firewall policy.... Read more
Affected Products : firewall-1- EPSS Score: %0.05
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2001-1165
Intego FileGuard 4.0 uses weak encryption to store user information and passwords, which allows local users to gain privileges by decrypting the information, e.g., with the Disengage tool.... Read more
- EPSS Score: %0.21
- Published: Apr. 01, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0078
The zone determination function in Microsoft Internet Explorer 5.5 and 6.0 allows remote attackers to run scripts in the Local Computer zone by embedding the script in a cookie, aka the "Cookie-based Script Execution" vulnerability.... Read more
Affected Products : internet_explorer- EPSS Score: %20.34
- Published: Mar. 29, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-0040
Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via the HOSTALIASES environment variable, which might allow the users to gain privileges.... Read more
Affected Products : irix- EPSS Score: %0.06
- Published: Mar. 28, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0039
rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via malformed RPC packets with invalid lengths.... Read more
Affected Products : irix- EPSS Score: %0.66
- Published: Mar. 28, 2002
- Modified: Apr. 03, 2025
-
6.2
MEDIUMCVE-2002-0162
LogWatch before 2.5 allows local users to execute arbitrary code via a symlink attack on the logwatch temporary directory.... Read more
- EPSS Score: %0.12
- Published: Mar. 27, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0163
Heap-based buffer overflow in Squid before 2.4 STABLE4, and Squid 2.5 and 2.6 until March 12, 2002 distributions, allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via compressed DNS responses.... Read more
- EPSS Score: %3.90
- Published: Mar. 26, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0117
Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.... Read more
Affected Products : yabb- EPSS Score: %6.89
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0104
AFTPD 5.4.4 allows remote attackers to gain sensitive information via a CD (CWD) ~ (tilde) command, which causes a core dump.... Read more
Affected Products : aftpd- EPSS Score: %0.92
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0098
Buffer overflow in index.cgi administration interface for Boozt! Standard 0.9.8 allows local users to execute arbitrary code via a long name field when creating a new banner.... Read more
Affected Products : boozt_standard- EPSS Score: %2.21
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0126
Buffer overflow in BlackMoon FTP Server 1.0 through 1.5 allows remote attackers to execute arbitrary code via a long argument to (1) USER, (2) PASS, or (3) CWD.... Read more
Affected Products : blackmoon_ftp_server- EPSS Score: %3.99
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0123
MDG Computer Services Web Server 4D WS4D/eCommerce 3.0 and earlier, and possibly 3.5.3, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.... Read more
Affected Products : web_server_4d_ecommerce- EPSS Score: %0.99
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-0113
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for... Read more
Affected Products : networker- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2002-0109
Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 Routers, and possibly other products, allow remote attackers to gain sensitive information and cause a denial of service via an SNMP query for the default community string "public," which causes the router ... Read more
- EPSS Score: %0.76
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0102
Oracle9iAS Web Cache 2.0.0.x allows remote attackers to cause a denial of service via (1) a request to TCP ports 1100, 4000, 4001, and 4002 with a large number of null characters, and (2) a request to TCP port 4000 with a large number of "." characters.... Read more
- EPSS Score: %0.56
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-0138
CDRDAO 1.1.4 and 1.1.5 allows local users to read arbitrary files via the show-data command.... Read more
Affected Products : cdrdao- EPSS Score: %0.12
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025