search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-04-10 2002-04-10 2002-04-10 VU#454091 Microsoft Internet Information Server (IIS) vulnerable to buffer overflow via inaccurate checking of delimiters in HTTP header fields
2002-04-10 2002-04-10 2002-04-10 VU#721963 Microsoft Internet Information Server (IIS) buffer overflow in server-side includes (SSI) containing long invalid file name
2002-04-10 2002-04-10 2002-04-10 VU#521059 Microsoft Internet Information Server (IIS) vulnerable to DoS when URL request exceeds maximum allowed length
2002-04-08 2002-03-07 2002-04-08 VU#152867 Buffer overflow in Microsoft Windows Shell
2002-04-02 2001-01-04 2002-04-08 VU#496064 ibrow NewsDesk does not securely handle input passed to open()
2002-04-05 2001-10-06 2002-04-05 VU#710347 AOL Instant Messenger vulnerable to DoS via crafted GIF file
2002-04-05 2000-10-03 2002-04-05 VU#683765 AOL Instant Messenger vulnerable to denial of service via crafted file name
2002-04-05 2000-12-12 2002-04-05 VU#474592 AOL Instant Messenger contains buffer overflows in parsing of AIM URI handler requests
2002-04-05 2001-01-24 2002-04-05 VU#541384 AOL Instant Messenger saves code embedded in image tag to conversation log which could be viewed/executed by a browser
2002-03-07 2002-03-07 2002-04-02 VU#408419 OpenSSH contains a one-off overflow of an array in the channel handling code
2001-05-06 2001-03-13 2002-04-02 VU#154976 Sun Solaris SNMP proxy agent /opt/SUNWssp/bin/snmpd contains buffer overflow
2002-02-14 2002-02-11 2002-03-29 VU#932283 Microsoft Internet Explorer HTML rendering engine contains buffer overflow processing SRC attribute of HTML <EMBED> directive
2002-03-29 2001-06-26 2002-03-29 VU#121099 ypbind contains buffer overflow
2002-03-29 2001-05-29 2002-03-29 VU#233200 GnuPG contains format-string vulnerability in handling of encrypted data filename
2002-03-29 2001-05-07 2002-03-29 VU#132099 Jana Server does not adequately validate user input thereby allowing directory traversal

Sponsored by CISA.