Latest CVE Feed
-
7.5
HIGHCVE-2002-0091
Multiple CGI scripts in CIDER SHADOW 1.5 and 1.6 allows remote attackers to execute arbitrary commands via certain form fields.... Read more
Affected Products : cider_shadow- EPSS Score: %1.01
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0082
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly initialize memory using the i2d_SSL_SESSION function, which allows remote attackers to use a buffer overflow to execute arbitrary code ... Read more
- EPSS Score: %2.51
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-0087
bindsock in Lotus Domino 5.07 on Solaris allows local users to create arbitrary files via a symlink attack on temporary files.... Read more
- EPSS Score: %0.12
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0083
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.... Read more
Affected Products : openssh suse_linux linux linux mandrake_linux mandrake_linux_corporate_server secure_linux openpkg immunix secure_linux +1 more products- EPSS Score: %4.08
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0084
Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.... Read more
- EPSS Score: %3.23
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0090
Buffer overflow in Low BandWidth X proxy (lbxproxy) in Solaris 8 allows local users to execute arbitrary code via a long display command line option.... Read more
Affected Products : solaris- EPSS Score: %0.14
- Published: Mar. 15, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0081
Buffer overflows in (1) php_mime_split in PHP 4.1.0, 4.1.1, and 4.0.6 and earlier, and (2) php3_mime_split in PHP 3.0.x allows remote attackers to execute arbitrary code via a multipart/form-data HTTP POST request when file_uploads is enabled.... Read more
Affected Products : php- EPSS Score: %44.25
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0026
Internet Explorer 5.5 and 6.0 allows remote attackers to bypass restrictions for executing scripts via an object that processes asynchronous events after the initial security checks have been made.... Read more
Affected Products : internet_explorer- EPSS Score: %7.12
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0050
Buffer overflow in AuthFilter ISAPI filter on Microsoft Commerce Server 2000 allows remote attackers to execute arbitrary code via long authentication data.... Read more
Affected Products : commerce_server- EPSS Score: %12.16
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0068
Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbitrary code with an ftp:// URL with a larger number of special characters, which exceed the buffer when Squid URL-escapes the characters... Read more
- EPSS Score: %5.56
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0053
Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers to cause a denial of service or execute arbitrary code via a malformed management request. NOTE: this candidate may be split... Read more
- EPSS Score: %33.40
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0063
Buffer overflow in ippRead function of CUPS before 1.1.14 may allow attackers to execute arbitrary code via long attribute names or language values.... Read more
Affected Products : cups- EPSS Score: %1.94
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0018
In Microsoft Windows NT and Windows 2000, a trusting domain that receives authorization information from a trusted domain does not verify that the trusted domain is authoritative for all listed SIDs, which allows remote attackers to gain Domain Administra... Read more
- EPSS Score: %36.04
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0060
IRC connection tracking helper module in the netfilter subsystem for Linux 2.4.18-pre9 and earlier does not properly set the mask for conntrack expectations for incoming DCC connections, which could allow remote attackers to bypass intended firewall restr... Read more
- EPSS Score: %3.33
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2002-0049
Microsoft Exchange Server 2000 System Attendant gives "Everyone" group privileges to the WinReg key, which could allow remote attackers to read or modify registry keys.... Read more
Affected Products : exchange_server- EPSS Score: %11.34
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
2.6
LOWCVE-2002-0069
Memory leak in SNMP in Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service.... Read more
- EPSS Score: %1.36
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0067
Squid 2.4 STABLE3 and earlier does not properly disable HTCP, even when "htcp_port 0" is specified in squid.conf, which could allow remote attackers to bypass intended access restrictions.... Read more
- EPSS Score: %0.22
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0062
Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling."... Read more
- EPSS Score: %0.20
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0052
Internet Explorer 6.0 and earlier does not properly handle VBScript in certain domain security checks, which allows remote attackers to read arbitrary files.... Read more
Affected Products : internet_explorer- EPSS Score: %34.38
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0020
Buffer overflow in telnet server in Windows 2000 and Interix 2.2 allows remote attackers to execute arbitrary code via malformed protocol options.... Read more
- EPSS Score: %19.52
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025