search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-03-28 2002-02-19 2002-07-29 VU#619707 Microsoft SQL Server contains buffer overflows in openrowset and opendatasource macros
2002-05-17 2002-02-19 2005-04-29 VU#150227 HTTP proxy default configurations allow arbitrary TCP connections
2002-02-12 2002-02-12 2007-11-07 VU#854306 Multiple vulnerabilities in SNMPv1 request handling
2002-03-28 2002-02-12 2003-12-09 VU#726187 HP-UX kernel specifies incorrect arguments for setrlimit()
2002-01-16 2002-02-12 2007-11-07 VU#107186 Multiple vulnerabilities in SNMPv1 trap handling
2002-10-01 2002-02-11 2002-10-01 VU#355971 Microsoft Internet Explorer executes scripts when scripting has been disabled after bypassing initial security checks
2002-02-14 2002-02-11 2002-03-29 VU#932283 Microsoft Internet Explorer HTML rendering engine contains buffer overflow processing SRC attribute of HTML <EMBED> directive
2011-09-27 2002-02-08 2011-12-08 VU#864643 0 SSL 3.0 and TLS 1.0 allow chosen plaintext attack in CBC modes
2002-09-27 2002-02-07 2003-03-26 VU#978131 Microsoft Exchange 2000 system attendant sets incorrect remote registry permissions
2002-03-06 2002-02-06 2002-03-06 VU#977251 Oracle 9iAS XSQL Servlet ignores file permissions allowing arbitrary users to view sensitive configuration files
2002-02-28 2002-02-06 2002-03-15 VU#750299 Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via HTTP request
2002-02-25 2002-02-06 2002-03-15 VU#805915 Oracle9i Application Server Apache PL/SQL module does not properly handle HTTP Authorization header
2002-03-06 2002-02-06 2002-03-06 VU#798611 Oracle 9iAS contains cross-site scripting vulnerability in "htp.print"
2002-02-28 2002-02-06 2002-03-15 VU#923395 Oracle9i Application Server Apache PL/SQL module vulnerable to buffer overflow via cache directory name
2002-02-26 2002-02-06 2003-07-03 VU#180147 Oracle 9i Database Server PL/SQL module allows remote command execution without authentication

Sponsored by CISA.