Latest CVE Feed
-
5.0
MEDIUMCVE-2002-0101
Microsoft Internet Explorer 6.0 and earlier allows local users to cause a denial of service via an infinite loop for modeless dialogs showModelessDialog, which causes CPU usage while the focus for the dialog is not released.... Read more
Affected Products : internet_explorer- EPSS Score: %10.62
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-0103
An installer program for Oracle9iAS Web Cache 2.0.0.x creates executable and configuration files with insecure permissions, which allows local users to gain privileges by (1) running webcached or (2) obtaining the administrator password from webcache.xml.... Read more
- EPSS Score: %0.09
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0106
BEA Systems Weblogic Server 6.1 allows remote attackers to cause a denial of service via a series of requests to .JSP files that contain an MS-DOS device name.... Read more
Affected Products : weblogic_server- EPSS Score: %6.04
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0094
config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.... Read more
Affected Products : bscw- EPSS Score: %1.20
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0096
The installation of Geeklog 1.3 creates an extra group_assignments record which is not properly deleted, which causes the first newly created user to be added to the GroupAdmin and UserAdmin groups, which could provide that user with administrative privil... Read more
Affected Products : geeklog- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0128
cgitest.exe in Sambar Server 5.1 before Beta 4 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long argument.... Read more
Affected Products : sambar_server- EPSS Score: %8.65
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2002-0113
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for... Read more
Affected Products : networker- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2002-0109
Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 Routers, and possibly other products, allow remote attackers to gain sensitive information and cause a denial of service via an SNMP query for the default community string "public," which causes the router ... Read more
- EPSS Score: %0.76
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0102
Oracle9iAS Web Cache 2.0.0.x allows remote attackers to cause a denial of service via (1) a request to TCP ports 1100, 4000, 4001, and 4002 with a large number of null characters, and (2) a request to TCP port 4000 with a large number of "." characters.... Read more
- EPSS Score: %0.56
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0098
Buffer overflow in index.cgi administration interface for Boozt! Standard 0.9.8 allows local users to execute arbitrary code via a long name field when creating a new banner.... Read more
Affected Products : boozt_standard- EPSS Score: %2.21
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-0138
CDRDAO 1.1.4 and 1.1.5 allows local users to read arbitrary files via the show-data command.... Read more
Affected Products : cdrdao- EPSS Score: %0.12
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0134
Telnet proxy in Avirt Gateway Suite 4.2 does not require authentication for connecting to the proxy system itself, which allows remote attackers to list file contents of the proxy and execute arbitrary commands via a "dos" command.... Read more
Affected Products : avirt_gateway_suite- EPSS Score: %1.33
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0133
Buffer overflows in Avirt Gateway Suite 4.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long header fields to the HTTP proxy, or (2) a long string to the telnet proxy.... Read more
- EPSS Score: %3.78
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0126
Buffer overflow in BlackMoon FTP Server 1.0 through 1.5 allows remote attackers to execute arbitrary code via a long argument to (1) USER, (2) PASS, or (3) CWD.... Read more
Affected Products : blackmoon_ftp_server- EPSS Score: %3.99
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0123
MDG Computer Services Web Server 4D WS4D/eCommerce 3.0 and earlier, and possibly 3.5.3, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.... Read more
Affected Products : web_server_4d_ecommerce- EPSS Score: %0.99
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0137
CDRDAO 1.1.4 and 1.1.5 allows local users to overwrite arbitrary files via a symlink attack on the $HOME/.cdrdao configuration file.... Read more
Affected Products : cdrdao- EPSS Score: %0.12
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0097
Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a user's permanent cookie to the target account.... Read more
Affected Products : geeklog- EPSS Score: %0.74
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-0130
Buffer overflow in efax 0.9 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -x argument.... Read more
Affected Products : efax- EPSS Score: %0.05
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0111
Directory traversal vulnerability in Funsoft Dino's Webserver 1.2 and earlier allows remote attackers to read files or execute arbitrary commands via a .. (dot dot) in the URL.... Read more
Affected Products : dinos_webserver- EPSS Score: %1.14
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2002-0122
Siemens 3568i WAP mobile phones allows remote attackers to cause a denial of service (crash) via an SMS message containing unusual characters.... Read more
Affected Products : 3568i_wap- EPSS Score: %1.32
- Published: Mar. 25, 2002
- Modified: Apr. 03, 2025