Latest CVE Feed
-
5.0
MEDIUMCVE-2002-1344
Directory traversal vulnerability in wget before 1.8.2-4 allows a remote FTP server to create or overwrite files as the wget user via filenames containing (1) /absolute/path or (2) .. (dot dot) sequences.... Read more
- Published: Dec. 18, 2002
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2002-1159
Canna 3.6 and earlier does not properly validate requests, which allows remote attackers to cause a denial of service or information leak.... Read more
- Published: Dec. 18, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1342
Unknown vulnerability in smb2www 980804-16 and earlier allows remote attackers to execute arbitrary commands.... Read more
Affected Products : smb2www- Published: Dec. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1255
Microsoft Outlook 2002 allows remote attackers to cause a denial of service (repeated failure) via an email message with a certain invalid header field that is accessed using POP3, IMAP, or WebDAV, aka "E-mail Header Processing Flaw Could Cause Outlook 20... Read more
Affected Products : outlook- Published: Dec. 18, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1186
Internet Explorer 5.01 through 6.0 does not properly perform security checks on certain encoded characters within a URL, which allows a remote attacker to steal potentially sensitive information from a user by redirecting the user to another site that has... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-1272
Alcatel OmniSwitch 7700/7800 switches running AOS 5.1.1 contains a back door telnet server that was intended for development but not removed before distribution, which allows remote attackers to gain administrative privileges.... Read more
Affected Products : aos- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2002-1334
Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct parameter in imageFolio.cgi, or (2) nph-build.cgi.... Read more
Affected Products : imagefolio- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1269
Unknown vulnerability in NetInfo Manager application in Mac OS X 10.2.2 allows local users to access restricted parts of a filesystem.... Read more
Affected Products : mac_os_x- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1267
Mac OS X 10.2.2 allows remote attackers to cause a denial of service by accessing the CUPS Printing Web Administration utility, aka "CUPS Printing Web Administration is Remotely Accessible."... Read more
Affected Products : mac_os_x- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1322
Rational ClearCase 4.1, 2002.05, and possibly other versions allows remote attackers to cause a denial of service (crash) via certain packets to port 371, e.g. via nmap.... Read more
Affected Products : clearcase- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-1318
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a lit... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1321
Multiple buffer overflows in RealOne and RealPlayer allow remote attackers to execute arbitrary code via (1) a Synchronized Multimedia Integration Language (SMIL) file with a long parameter, (2) a long long filename in a rtsp:// request, e.g. from a .m3u ... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1323
Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.... Read more
Affected Products : enterprise_linux solaris sunos unixware linux_advanced_workstation irix open_unix safe.pm linux- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2002-1335
Cross-site scripting (XSS) vulnerability in w3m 0.3.2 does not escape an HTML tag in a frame, which allows remote attackers to insert arbitrary web script or HTML and access files or cookies.... Read more
Affected Products : w3m- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1317
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1254
Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model and access information on the local system or in other domains, and possibly execute code, via cached methods and objects, aka "Cross Domain Verification via C... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-1319
The Linux kernel 2.4.20 and earlier, and 2.5.x, when running on x86 systems, allows local users to cause a denial of service (hang) via the emulation mode, which does not properly clear TF and NT EFLAGs.... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-1185
Internet Explorer 5.01 through 6.0 does not properly check certain parameters of a PNG file when opening it, which allows remote attackers to cause a denial of service (crash) by triggering a heap-based buffer overflow using invalid length codes during de... Read more
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1268
Mac OS X 10.2.2 allows local users to gain privileges via a mounted ISO 9600 CD, aka "User Privilege Elevation via Mounting an ISO 9600 CD."... Read more
Affected Products : mac_os_x- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-1266
Mac OS X 10.2.2 allows local users to gain privileges by mounting a disk image file that was created on another system, aka "Local User Privilege Elevation via Disk Image File."... Read more
Affected Products : mac_os_x- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025