search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-04-10 2002-04-10 2002-06-13 VU#669779 Microsoft Internet Information Server (IIS) 4.0, 5.0, and 5.1 buffer overflow in chunked encoding transfer mechanism for ASP
2002-04-08 2002-03-07 2002-04-08 VU#152867 Buffer overflow in Microsoft Windows Shell
2002-04-05 2001-10-06 2002-04-05 VU#710347 AOL Instant Messenger vulnerable to DoS via crafted GIF file
2002-04-05 2000-10-03 2002-04-05 VU#683765 AOL Instant Messenger vulnerable to denial of service via crafted file name
2002-04-05 2000-12-12 2002-04-05 VU#474592 AOL Instant Messenger contains buffer overflows in parsing of AIM URI handler requests
2002-04-05 2001-01-24 2002-04-05 VU#541384 AOL Instant Messenger saves code embedded in image tag to conversation log which could be viewed/executed by a browser
2002-04-02 2000-03-27 2008-05-06 VU#24140 Linux kernel IP Masquerading "destination loose" (DLOOSE) configuration passes arbitrary UDP traffic
2002-04-02 2001-01-04 2002-04-08 VU#496064 ibrow NewsDesk does not securely handle input passed to open()
2002-04-02 2002-04-01 2004-02-23 VU#640827 IBM AIX Parallel Systems Support Program (PSSP) contains vulnerability in File Collections subsystem allowing arbitrary access to sensitive configuration files
2002-04-01 2001-09-17 2002-05-03 VU#657899 Lotus Notes does not adequately secure databases thereby permitting arbitrary user to extract file attachments via NSFDbReadObject function call
2002-03-29 2002-01-13 2003-05-08 VU#626395 Microsoft Internet Explorer Permits Remote Command Execution Through <OBJECT> Tag
2002-03-29 2001-04-13 2002-07-30 VU#125235 Apache Web Server vulnerable to DoS via crafted HTTP request
2002-03-29 2001-06-26 2002-03-29 VU#121099 ypbind contains buffer overflow
2002-03-29 2001-06-19 2004-02-23 VU#219043 Netwin Surge FTP Server does not adequately validate user input thereby allowing directory traversal
2002-03-29 2001-05-29 2002-03-29 VU#233200 GnuPG contains format-string vulnerability in handling of encrypted data filename

Sponsored by CISA.